Fortinet black logo

CLI Reference

system saml

system saml

Use this command to configure FortiMail to act as a SAML SSO service provider (SP).

In Security Assertion Markup Language (SAML) SSO, you must configure both of these to connect and authenticate with each other:

  • FortiMail, which is the service provider (SP)
  • FortiAuthenticator or other remote authentication server, which is the identity provider (IdP). See profile sso.

When you enable SSO, FortiMail automatically generates its SP metadata XML, entity ID, and ACS URL. (To download them, use the GUI.)

Syntax

config system saml

set status {enable | disable}

end

Variable

Description

Default

status {enable | disable}

Enable or disable the feature.

disable

Related topics

profile sso

system appearance

system saml

Use this command to configure FortiMail to act as a SAML SSO service provider (SP).

In Security Assertion Markup Language (SAML) SSO, you must configure both of these to connect and authenticate with each other:

  • FortiMail, which is the service provider (SP)
  • FortiAuthenticator or other remote authentication server, which is the identity provider (IdP). See profile sso.

When you enable SSO, FortiMail automatically generates its SP metadata XML, entity ID, and ACS URL. (To download them, use the GUI.)

Syntax

config system saml

set status {enable | disable}

end

Variable

Description

Default

status {enable | disable}

Enable or disable the feature.

disable

Related topics

profile sso

system appearance