Users and authentication
LDAP server list
LDAP server options
FortiGate-60M Administration Guide
The FortiGate unit supports LDAP protocol functionality defined in RFC2251 for
looking up and validating user names and passwords. FortiGate LDAP supports all
LDAP servers compliant with LDAP v3.
FortiGate LDAP support does not extend to proprietary functionality, such as
notification of password expiration, that is available from some LDAP servers.
FortiGate LDAP support does not supply information to the user about why
authentication failed.
Figure 117:LDAP server list
Create New
Add a new LDAP server.
Server Name/IP The domain name or IP address of the LDAP server.
Port
The port used to communicate with the LDAP server.
Common Name
The common name identifier for the LDAP server. 20 characters maximum.
The common name identifier for most LDAP servers is cn. However some
Identifier
servers use other common name identifiers such as uid.
Distinguished
The distinguished name used to look up entries on the LDAP server. It
reflects the hierarchy of LDAP database object classes above the Common
Name
Name Identifier.
The Delete and Edit icons.
Figure 118:LDAP server configuration
Name
Enter a name to identify the LDAP server.
Server Name/IP Enter the domain name or IP address of the LDAP server.
Server Port
Enter the port used to communicate with the LDAP server.
By default LDAP uses port 389.
01-28007-0144-20041217
LDAP
239