Hot!FSSO works with Samba4 AD mode?

Author
AndersonGodoy
New Member
  • Total Posts : 3
  • Scores: 0
  • Reward points: 0
  • Joined: 2018/04/13 11:59:22
  • Status: offline
2018/04/13 12:24:22 (permalink)
0

FSSO works with Samba4 AD mode?

Hello,
I am running a test lab, where I configured a samba 4.7.6 in AD mode and am trying to perform samba integration with the fortigate to work with SSO authentication. However all the documentation I found for the fortigate or for the authenticator was for integration with Windows Active Directory. Is there a way, or does anyone know of any way to configure FSSO with Samba, either by Fortigate or Fortiauthenticator or with any Fortinet product?
#1

6 Replies Related Threads

    levan68
    New Member
    • Total Posts : 1
    • Scores: 0
    • Reward points: 0
    • Joined: 2018/04/25 09:07:34
    • Status: offline
    Re: FSSO works with Samba4 AD mode? 2018/04/25 09:20:09 (permalink)
    0
    integrate samba4 AD with fortigate is posible , i have running a test lab  FSSO with samba4 ad , i just add command " ldap server require strong auth = no " in smb.conf  and run this step 
    http://help.fortinet.com/...tion/SSO-WindowsAD.htm
    #2
    AndersonGodoy
    New Member
    • Total Posts : 3
    • Scores: 0
    • Reward points: 0
    • Joined: 2018/04/13 11:59:22
    • Status: offline
    Re: FSSO works with Samba4 AD mode? 2018/04/26 05:25:22 (permalink)
    0
    Hi @levan68
     
    Thanks for your reply, i will test this guide. Do you had any problem that you remember? besides this option "ldap server strong auth" that i already use on my smb.conf.
    #3
    bommi
    Gold Member
    • Total Posts : 143
    • Scores: 10
    • Reward points: 0
    • Joined: 2016/08/03 03:42:49
    • Location: Germany
    • Status: offline
    Re: FSSO works with Samba4 AD mode? 2019/01/01 01:13:08 (permalink)
    0
    Hi AndersonGodoy,
     
    have you been able to setup FSSO with Samba4?
    My setup using Samba 4.9.4 doesn't work.
     
    Regards
    bommi
    #4
    AndersonGodoy
    New Member
    • Total Posts : 3
    • Scores: 0
    • Reward points: 0
    • Joined: 2018/04/13 11:59:22
    • Status: offline
    Re: FSSO works with Samba4 AD mode? 2019/01/02 02:45:24 (permalink)
    0
    Hi bommi,
     
    unfortunately no, no SSO configuration with samba4 worked, even following all cookbooks.
    #5
    bommi
    Gold Member
    • Total Posts : 143
    • Scores: 10
    • Reward points: 0
    • Joined: 2016/08/03 03:42:49
    • Location: Germany
    • Status: offline
    Re: FSSO works with Samba4 AD mode? 2019/01/02 04:04:20 (permalink)
    0
    Thank you for your response!
     
    I will try the Palo Alto way using Syslog SSO, but in this case I need to use FortiAuthenticator to read the syslog messages from Samba4 and to build the user database.
     
    This is how Palo Alto PanOS does it:
    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClRhCAK
     
    As the FortiGate itself cant be configured to read the syslog messages, we need an FortiAuthenticator:
    http://help.fortinet.com/fauth/4-0/Content/4_0%20Admin%20Guide/600/607_Syslog.htm
     
    Regards
    bommi
     
    #6
    romanr
    Platinum Member
    • Total Posts : 908
    • Scores: 30
    • Reward points: 0
    • Joined: 2004/06/08 08:29:56
    • Location: Vienna/Austria
    • Status: offline
    Re: FSSO works with Samba4 AD mode? 2019/01/02 08:34:52 (permalink)
    0
    Hi,
     
    no Fortinet FSSO technique will work with Samba 4AD. Just because the Fortinet SSO solution will read windows event logs or run WMI calls to the domain controllers to discover logged on users and their IPs.
     
    Using Syslog SSO with FAC can be a proper way to achieve your goals.
     
    Depending on your needs you could also consider Kerberos based Authentication for your users with explicit or implicit proxy configuration.
     
    Br,
    Roman
    #7
    Jump to:
    © 2019 APG vNext Commercial Version 5.5