Fortigates clearly have a CRON type mechanism in them for scheduled
updates. And the service forticron runs on teh machine. I wonder if we
can get into it to add our own stuff. Jon
If I understand correctly then you have created a group of users on the
FortiAuthenticator that are not domain users. You need to create an FSSO
user group on the FAC with the same name as the user group you created.
This group is then pushed into FS...
I have never seen this, did you do an import of anything from another
system? This looks like something in the config has some characters that
the Fortigate does not understand. From CLI try running "diag debug
config-error-log read" and see if this ...
Fillip, With so many DCs, do you think your company would pay for a
FortiAuthenticator rather than using the free software version.
FortiAuthenticator also comes as a VMWare image.5
Have you tried changing the auth-timeout-type to hard-timeout under
user=>settings. I know that this will kill all open sessions on a
timeout. It likely could do the same thing on a logout, but would need
testing.
Hi Kevin, You should be able to enable SNMP administrative access to the
automatically created VPN interface found under system interface and the
physical interface that the VPN is listening on. You will likely need to
give this interface an IP addre...