Fortinet white logo
Fortinet white logo

FortiDLP Administration Guide

Configuring SAML with Okta

Configuring SAML with Okta

Follow these instructions to configure Okta as your SAML IdP.

How to configure SAML with Okta
  1. Log in to the Okta Admin Console.
  2. On the menu bar, click Classic UI.
  3. In the Shortcuts menu, click Add Applications.
  4. In the left-hand panel, click Create New App.
  5. In the Create a New Application Integration dialog box, select SAML 2.0.
  6. Click Create.
  7. In the General Settings panel, in the App name field, type FortiDLP.
  8. Click Next.
  9. In the Single sign on URL field, paste the ACS URL you obtained from the FortiDLP Console.
  10. In the Audience URI (SP Entity ID) field, paste the Entity ID you obtained from the FortiDLP Console.
  11. In the Attribute statements section, configure your attributes:
    1. To configure the login name attribute:
      1. In the Name field, type Email or your preferred login name attribute name.
      2. In the corresponding Value menu, select user.email (leaving Name format set to Unspecified).
    2. To configure the role attribute:
      1. Click Add Another.
      2. In the Name field, paste https://jazznetworks.com/SAML/Attributes/Role.
      3. In the corresponding Value menu, select your preferred role attribute name (leaving Name format set to Unspecified). This can be an existing attribute or a new custom attribute you create using these instructions. The attribute value must correspond to at least one role in the FortiDLP Infrastructure.

    3. To configure first and last name attributes:
      1. In the Name field, type FirstName.
      2. In the corresponding Value menu, select user.firstName (leaving Name format set to Unspecified).
      3. Click Add Another.
      4. In the Name field, type LastName.
      5. In the corresponding Value menu, select user.lastName (leaving Name format set to Unspecified).
  12. Click Next.
  13. Click Finish.
  14. In the Sign on methods panel, click View Setup Instructions.
  15. At the bottom of the page, in the Optional section, copy the IDP metadata.

To finish configuring SAML, see Configuring IdP metadata and attributes.

Configuring SAML with Okta

Configuring SAML with Okta

Follow these instructions to configure Okta as your SAML IdP.

How to configure SAML with Okta
  1. Log in to the Okta Admin Console.
  2. On the menu bar, click Classic UI.
  3. In the Shortcuts menu, click Add Applications.
  4. In the left-hand panel, click Create New App.
  5. In the Create a New Application Integration dialog box, select SAML 2.0.
  6. Click Create.
  7. In the General Settings panel, in the App name field, type FortiDLP.
  8. Click Next.
  9. In the Single sign on URL field, paste the ACS URL you obtained from the FortiDLP Console.
  10. In the Audience URI (SP Entity ID) field, paste the Entity ID you obtained from the FortiDLP Console.
  11. In the Attribute statements section, configure your attributes:
    1. To configure the login name attribute:
      1. In the Name field, type Email or your preferred login name attribute name.
      2. In the corresponding Value menu, select user.email (leaving Name format set to Unspecified).
    2. To configure the role attribute:
      1. Click Add Another.
      2. In the Name field, paste https://jazznetworks.com/SAML/Attributes/Role.
      3. In the corresponding Value menu, select your preferred role attribute name (leaving Name format set to Unspecified). This can be an existing attribute or a new custom attribute you create using these instructions. The attribute value must correspond to at least one role in the FortiDLP Infrastructure.

    3. To configure first and last name attributes:
      1. In the Name field, type FirstName.
      2. In the corresponding Value menu, select user.firstName (leaving Name format set to Unspecified).
      3. Click Add Another.
      4. In the Name field, type LastName.
      5. In the corresponding Value menu, select user.lastName (leaving Name format set to Unspecified).
  12. Click Next.
  13. Click Finish.
  14. In the Sign on methods panel, click View Setup Instructions.
  15. At the bottom of the page, in the Optional section, copy the IDP metadata.

To finish configuring SAML, see Configuring IdP metadata and attributes.