Description This article explains FSSO, in particular DC Agent mode, in
an easily understood manner. Scope FSSO, FortiGate. Solution Fortinet
Single-Sign-On (FSSO) is a proprietary Fortinet solution that allows
Active Directory user logins to be shar...
Description This article provides an overview of available redundancy
configurations in Fortinet Single-Sign-On (FSSO) setups and what common
configuration mistakes to avoid. Scope FortiGate, FortiProxy,
FortiAuthenticator, FSSO Agents. Solution Fort...
Description This article describes an overview of Dial-up IPSec
authentication and policy matching on the FortiGate. Scope FortiGate.
Solution FortiGate offers Dial-Up IPSec VPN tunnels as one method to
securely connect an endpoint to a protected net...
Description This article explains Kerberos authentication basics in an
easily understood manner. Scope FortiGate, FortiProxy. Solution Kerberos
is a very common authentication mechanism in Windows AD environments and
usually happens in the background...
Description This article explains how FortiGate parses a successful
RADIUS authentication response (Access-Accept) to learn group membership
information for the authenticated user. Scope FortiGate,
FortiAuthenticator. Solution Introduction: FortiGate...
Can you provide a precise firmware version? 5.4 was initially released
in 2016, and anything below version 7.0 is essentially out of support by
now (with 7.0 itself being out of support end of September) so if you
are on any version between 5.4 and 7...
I'm not terribly familiar with FortiMail log layout, but have a look at
the actual (raw) log message and verify what field contains a short
description of the log, and what field contains the actual log details,
then check against the handler and wha...
It does sound a bit like FortiClient/routing may be set up to send
everything through the VPN tunnel (no split-tunnel), and if FortiGate
lacks the policies to allow this, internet access would essentially be
down after VPN is established.
Hey magarm, in a load-balancing FortiAuthenticator cluster you can have
an active-passive cluster as primary, but the actual load-balancing
nodes must be standalone FortiAuthenticators, not active-passive pairs.
You can have up to ten load-balancing ...