Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
cjp
New Contributor

FSSO Polling mode with two Active Directory

Hello everybody,

 

I would like to know if it's possible to connect my fortigate to two different active directory in order to enable authentication for two domains. I've been able to connecte to the second ldap server and create the fsso and select the groups but I can't enable it...

I'm in v5.2.4,build688 and in polling mode.

 

Thanks

1 REPLY 1
xsilver_FTNT
Staff
Staff

Hello,

if you are polling directly from FortiGate unit then this is not possible and supported scenario.

Use standalone FSSO Collector Agent installed either on one DC collecting data for both domains, or two Collectors (one in each domain).

Kind regards,

Tomas

Tomas Stribrny - NASDAQ:FTNT - Fortinet Inc. - TAC Staff Engineer
AAA, MFA, VoIP and other Fortinet stuff

Labels
Top Kudoed Authors