FortiMail
FortiMail provides advanced, multi-layer protection against the full spectrum of email-borne threats
Not applicable
Article Id 190702
Article
Description

Configuring FortiMail webmail authentication to use Microsoft Active Directory

Components
  • FortiMail 3.0
  • LDAP
  • Microsoft Active Directory
Steps or Commands

Active Directory side

Create a default user on the Active Directory with read privileges on the directory, that will be used to bind to Active Directory and perform a a subtree search.

Screen capture of the LDAP account properties settings.

FortiMail LDAP configuration

Configure the FortiMail LDAP profile to instruct FortiMail to bind to the Active Directory and research a user based on his windows logon name (UserPrincipalName) in all the sub-OUs.

Screen capture of the FortiMail Edit LDAP server settings.

The user can now authenticate through the webmail, using userPrincipalName@domain

Screen capture of the FortiMail login dialog box.