Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
LeoT
New Contributor

Policy doesn't accept address + user as source

Hi,

is it possible to insert both adresses and users in a IPV4 policy?

I have a FG 100E 5.6.

If I use just the address everything works well, but if I also add a user, the policy is not applied.

 

 

2 REPLIES 2
ede_pfau
SuperUser
SuperUser

well, I think it does but the policy might not match anymore.

Adding a user (or user group) adds user authentication. For that to happen the user needs to use a protocol which permits interaction, namely HTTP, HTTPS, telnet or ftp. Otherwise he/she cannot enter credentials.

Tell us more about that policy - which service is allowed, did you try to authenticate interactively?


Ede

"Kernel panic: Aiee, killing interrupt handler!"
Ede"Kernel panic: Aiee, killing interrupt handler!"
LeoT
New Contributor

I have solved adding the FSSO feature, installing the agent on the PDC and creating from scratch all the groups using the FSSO.

Labels
Top Kudoed Authors