FortiGate FSSO AD Groups not Appearing?

FSSO KB ID 0001794


While recently needing to add a new AD group to my firewalls FSSO setup, (to be used in a policy.) The new group could not bee seen (it’s called GS-Web-Block-Override).

AD Group missing from FSSO

FSSO Force Sync

The common fix for this is to create a filter on your FSSO agent server, that will ONLY look of the groups you specify like so.

AD Group Filter FSSO

However, in my case that didn’t work either! I spent ages trawling Forti pages and Reddit, until I came across the following command. (I’ve lost the original link so I can’t credit the poster).

execute fsso refresh

Force Refresh AD Group FSSO

Then, as if by magic, my group appeared!

AD Group not appearing FSSO

Related Articles, References, Credits, or External Links


Author: PeteLong

Share This Post On

Submit a Comment

Your email address will not be published. Required fields are marked *