![Fortinet FortiGate 1U Quick Start Manual Download Page 189](http://html.mh-extra.com/html/fortinet/fortigate-1u/fortigate-1u_quick-start-manual_2321804189.webp)
Providing Single Sign-On for Windows AD with LDAP
169
1. Con
fi
guring access to the LDAP server
2. Con
fi
guring the DC agent as an FSSO agent
3. Con
fi
guring a group
fi
lter on the FSSO agent
4. Creating an FSSO user group and adding AD user groups
5. Creating a security policy to allow the FSSO user group access
6. Results
Providing Single Sign-On for Windows AD with
LDAP
A logged-on Windows user can be automatically authenticated on a FortiGate unit
through Fortinet Single Sign-On. Some Windows AD systems use an external LDAP
server. FSSO can also accommodate this con
fi
guration.
Port 1
Internet
Internal Network
WAN 1
FortiGate
Windows AD
Domain Controller
192.168.1.114
LDAP Server
192.168.1. 117
FSSO Agent
THE FOR
TIGA
TE COOKBOOK
Summary of Contents for FortiGate 1U
Page 1: ...FortiOS 5 0 4 1U Models ...
Page 3: ......
Page 4: ...2 ...
Page 5: ...3 QUICKSTART GUIDE FortiGate 1U QuickStart Guide ...
Page 14: ......
Page 15: ...The FortiGate Cookbook Recipes for Success with your FortiGate THE FORTIGATE COOKBOOK ...
Page 16: ......
Page 20: ......
Page 24: ......
Page 88: ......
Page 158: ......
Page 198: ......
Page 229: ...Using redundant OSPF routing over IPsec VPN 209 THE FORTIGATE COOKBOOK ...
Page 235: ...Using redundant OSPF routing over IPsec VPN 215 THE FORTIGATE COOKBOOK ...
Page 238: ......
Page 239: ...About Fortinet High Performace Network Security Q3 2013 ...
Page 253: ...PRODUCT GUIDE Product Guide ...
Page 265: ......