Re: FSSO missing user logon events in DC agent mode - "Too much request in the queue"
2021/02/25 10:02:55
(permalink)
Hi,
How the configuration is done in your Fortigate? Poll Active Directory or Full Collector?
I already saw some installation where Polling was not fast enough to process all requests.
The most stable configuration is:
DC Agent installed on all Active Directory Domain Controllers
Collector on one or two servers or AD, two is only for redundancy purpose
FSSO Agent on Windows AD configured in the Fortigate (External Connectors).
With this configuration, I saw more than 800 computers in less than 15 minutes loging on the domain.
I hope it helps! :-)
Regards,
Philippe