Fortinet black logo

User Guide

Configuring an LDAP server

Configuring an LDAP server

To configure an LDAP server:
  1. Go to Security > Firewall Objects.
  2. Select LDAP Server from the User & Device dropdown.
  3. Click Create or select an existing LDAP server from the list and click Edit.
  4. In the form, enter the following information:

    Settings

    Guidelines

    Name

    Enter the display name for this server.
    Server IP/NameEnter the server IP address or FQDN.
    Server PortEnter the connection port on the server.
    Common Name IdentifierEnter the value of the Common Name attribute from the LDAP server.
    Distinguished NameEnter the Distinguished Name value from the LDAP server.
    Exchange ServerSpecify whether the LDAP server is connected to an Exchange server.

    Bind Type

    Select from the following:

    • Simple: The Distinguished Name and Password are used to authenticate with the LDAP server.

    • Anonymous: The LDAP server allows the client to search the directory without logging in.

    • Regular: The Distinguished Name and Password are used to authenticate with the LDAP server.

    User DN

    Enter the distinguished name used to identify the LDAP user.

    Change Password

    Enable to change the saved connection password for this LDAP server.

    Password

    Enter the connection password for this LDAP server.

    Secure Connection

    Select the connection mode for LDAP queries from the following options:

    • None: Do not use a secure connection mode.

    • Secure STARTTLS: Connect using StartTLS.

    • Secure LDAPS: Use LDAP over SSL when connecting.

  5. Click Save.

Configuring an LDAP server

To configure an LDAP server:
  1. Go to Security > Firewall Objects.
  2. Select LDAP Server from the User & Device dropdown.
  3. Click Create or select an existing LDAP server from the list and click Edit.
  4. In the form, enter the following information:

    Settings

    Guidelines

    Name

    Enter the display name for this server.
    Server IP/NameEnter the server IP address or FQDN.
    Server PortEnter the connection port on the server.
    Common Name IdentifierEnter the value of the Common Name attribute from the LDAP server.
    Distinguished NameEnter the Distinguished Name value from the LDAP server.
    Exchange ServerSpecify whether the LDAP server is connected to an Exchange server.

    Bind Type

    Select from the following:

    • Simple: The Distinguished Name and Password are used to authenticate with the LDAP server.

    • Anonymous: The LDAP server allows the client to search the directory without logging in.

    • Regular: The Distinguished Name and Password are used to authenticate with the LDAP server.

    User DN

    Enter the distinguished name used to identify the LDAP user.

    Change Password

    Enable to change the saved connection password for this LDAP server.

    Password

    Enter the connection password for this LDAP server.

    Secure Connection

    Select the connection mode for LDAP queries from the following options:

    • None: Do not use a secure connection mode.

    • Secure STARTTLS: Connect using StartTLS.

    • Secure LDAPS: Use LDAP over SSL when connecting.

  5. Click Save.