Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
jamestiberius
New Contributor II

FSSO type question

we have FSSO Agent running on member server, it pollss the AD server.

when looking at Show Logn Users, most of the users show as Type DC-agent, but a few are showing as type EventLog.

can someone tell me why?  my understanding of our setup is it polls the AD server, and those users in certain AD groups are allowed internet based on the group they are in.

so what is EventLog type in that case?

1 Solution
Muhammad_Haiqal

Hi @jamestiberius ,

There are 2 method for FSSO.
Fortigate itself poll from the AD server

vs
Fortigate poll from the DC-Agent which installed on the server.

 

In your case, maybe you have a combination of it.

haiqal

View solution in original post

2 REPLIES 2
Muhammad_Haiqal

Hi @jamestiberius ,

There are 2 method for FSSO.
Fortigate itself poll from the AD server

vs
Fortigate poll from the DC-Agent which installed on the server.

 

In your case, maybe you have a combination of it.

haiqal
Markus_M
Staff
Staff

More info on polling and which node understands what as well as which event IDs are used:

https://community.fortinet.com/t5/FortiAuthenticator/Technical-Tip-Windows-event-IDs-used-by-FSSO-in...

Labels
Top Kudoed Authors