Hi, Just for the feedback, this works perfectly with Kerberos and user
is seen with "every" AD groups he's belonging in. You can check the user
group mapping seen at FGT with those CLIs: # diag debug enable # diag
test app wad 2200 // 22xx (xx=proces...
Hey there Khizer, thanks for the update.. yes i saw that this is working
with FSSO but wanted to achieve the same with Kerberos.. the FSSO
polling agent at the FortiGate isn't supposed to scale at more than 200
users i think. hence the need for Kerbe...
Hey all, Doing some Kereros + Explicit Proxy testings on v6.0.4. Simple
question, how is a user mapped towards multiple AD groups?? For the
moment it seems i'm mapped to the 1st group alphabetically and not
multiple groups. The idea would be multiple...
flex10 wrote:Here's the solution provided by FortiNet-Support,
successfully tested on my FGT 500D with FortiOS 5.4.4: - set a publicly
trusted SSL-certificate under "User & Device" -> "Authentication
Settings" which includes the common-name you wish ...