Fortinet black logo

Administration Guide

FortiCloud SSO

FortiCloud SSO

By default, the FortiGate is configured to allow administrators to log in using FortiCloud single sign-on. Both IAM and non-IAM users on the FortiCloud support portal are supported. Non‑IAM users must be the FortiCloud account that the FortiGate is registered to.

To configure an IAM user in FortiCloud:
  1. Log in to your FortiCloud account at support.fortinet.com.

  2. Select Services > IAM and click Add IAM user.

  3. See Adding an IAM user in the FortiCloud Identity & Access Management (IAM) guide for more information. The Portal Permissions for SupportSite, IAMPortal, and FortiOS SSO must be configured to allow portal access for administrators.

To manually enable FortiCloud single sign-on in the GUI:
  1. Log in to the FortiGate and go to System > Settings.

  2. In the Administration Settings section, enable Allow administrative login using FortiCloud SSO.

  3. Click Apply.

To manually enable FortiCloud single sign-on in the CLI:
config system global
    set admin-forticloud-sso-login {enable | disable}
end
To log in to the FortiGate with the FortiCloud user:
  1. Go to the FortiGate log in screen.

  2. Click Sign in with FortiCloud. The FortiCloud log in page opens.

  3. Enter the FortiCloud account credentials and click Login.

    You are logged in to the FortiOS GUI. The SSO username is shown in the top right corner of the GUI.

FortiCloud SSO

By default, the FortiGate is configured to allow administrators to log in using FortiCloud single sign-on. Both IAM and non-IAM users on the FortiCloud support portal are supported. Non‑IAM users must be the FortiCloud account that the FortiGate is registered to.

To configure an IAM user in FortiCloud:
  1. Log in to your FortiCloud account at support.fortinet.com.

  2. Select Services > IAM and click Add IAM user.

  3. See Adding an IAM user in the FortiCloud Identity & Access Management (IAM) guide for more information. The Portal Permissions for SupportSite, IAMPortal, and FortiOS SSO must be configured to allow portal access for administrators.

To manually enable FortiCloud single sign-on in the GUI:
  1. Log in to the FortiGate and go to System > Settings.

  2. In the Administration Settings section, enable Allow administrative login using FortiCloud SSO.

  3. Click Apply.

To manually enable FortiCloud single sign-on in the CLI:
config system global
    set admin-forticloud-sso-login {enable | disable}
end
To log in to the FortiGate with the FortiCloud user:
  1. Go to the FortiGate log in screen.

  2. Click Sign in with FortiCloud. The FortiCloud log in page opens.

  3. Enter the FortiCloud account credentials and click Login.

    You are logged in to the FortiOS GUI. The SSO username is shown in the top right corner of the GUI.