Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Saintzev
New Contributor

FSSO No internet on Policy

Hi guys , 

 

im working on a FG 80C 5.2.11  and im trying to use FSSO with the Agent installed on the DC, from the Agent i can see the users are login, i configured a few group filters to see it on FG but doesnt work, 

on the FG Configure LDAP Succesfully and i created groups based on DC as group users (sso login mode) the group says the green check and it works, but then i use them on policies doesnt allow to open webpages, 

 y perfom a debug and the connection between the FG and DC with Agent seems ok but no users are listed on user-> monitor -> firewall

 

the DHCP Is handled by the FG i dont know if that info is usefull 

 

sorry for my bad translate, and hope can anyone help me :(  ive been 4 hours and no results 

 

thanks ! 

 

3 REPLIES 3
Fullmoon
Contributor III

kindly check if NAT is enabled in your policy. would you like to share your config?

 

Fortigate Newbie

Saintzev

Fullmoon wrote:

kindly check if NAT is enabled in your policy. would you like to share your config?

 

yup its enabled, and the policy without the FSSO Group work as well, 

who can be the ldap line ? dn=domain dc=com , or must have a CN=  in it ? 

 

cant paste the config right now because its holiday in the office 

 

Armando_Gomez_Barrio

hi friend,

 

I have a problem equal to what you mention,

 

Can anybody help me,

 

Best Regards

Armando Gomez