If these machines are domain joined, and you've setup FSSO properly
based off the guide below, then all of the corresponding AD groups would
be available within the FortiGate to use for policy creation.FortiOS
6.4.8 - FSSO Fortinet Single Sign-On (FS...