Fortinet black logo

Cookbook

Configuring FSSO on the FortiGate

Copy Link
Copy Doc ID 53d09085-7746-11e9-81a4-00505692583a:30378
Download PDF

Configuring FSSO on the FortiGate

  1. On the FortiGate, go to User & Device > Single Sign-On and select Create New.
  2. Set Type to Fortinet Single-Sign-On Agent, enter a Name, the FortiAuthenticator’s Internet-interface IP address, and the password, which must match the secret key entered at the beginning of the FortiAuthenticator configuration process.

    Select Apply & Refresh.

  3. The SAML user group name has been successfully pushed to the FortiGate from the FortiAuthenticator, appearing when you select View.
  4. You may have to wait a few minutes before the user group appears.

  5. Then go to User & Device > User Groups and create a new FSSO user group. Successfully authenticated users via SAML FSSO will be placed in this group.
  6. Enter a Name, set Type to Fortinet Single Sign-On (FSSO), and add the FSSO group as a Member.

Configuring FSSO on the FortiGate

  1. On the FortiGate, go to User & Device > Single Sign-On and select Create New.
  2. Set Type to Fortinet Single-Sign-On Agent, enter a Name, the FortiAuthenticator’s Internet-interface IP address, and the password, which must match the secret key entered at the beginning of the FortiAuthenticator configuration process.

    Select Apply & Refresh.

  3. The SAML user group name has been successfully pushed to the FortiGate from the FortiAuthenticator, appearing when you select View.
  4. You may have to wait a few minutes before the user group appears.

  5. Then go to User & Device > User Groups and create a new FSSO user group. Successfully authenticated users via SAML FSSO will be placed in this group.
  6. Enter a Name, set Type to Fortinet Single Sign-On (FSSO), and add the FSSO group as a Member.