Fortinet black logo

Authentication

Authentication

Use the Authentication tab to configure an organization to use separate SSO authentication servers for improved security.

See Authentication for more information.

To configure authentication settings for an organization:
  1. In the Authentication tab, enter the following information:

    Field

    Required

    Description

    Override Authentication Settings

    N

    Enable to override authentication settings set up in Authentication.

    Note: This option is disabled by default.

    SSO IDP Entity URL

    Y

    Enter the IDP Entity URL (ID) or URN for SAML provided by the IDP server.

    IDP Sign On Service Endpoint URL

    Y

    Enter the endpoint URL for IDP (Post) provided by the IDP server.

    IDP Sign On Service Redirect Endpoint URL

    Y

    Enter the endpoint URL for IDP (Redirect) provided by the IDP server.

    IDP Logout Service Endpoint

    Y

    Enter the IDP logout URL provided by IDP.

    SSO Certificate

    Y

    Enter the certificate provided by the IDP to decrypt the signed response.

    View/Change SSO Roles

    Click to map the SSO roles with the local profiles.

  2. Click Save.

    Click Reset to reset entries and selections in the form.

    Click Cancel to exit without saving.

Authentication

Use the Authentication tab to configure an organization to use separate SSO authentication servers for improved security.

See Authentication for more information.

To configure authentication settings for an organization:
  1. In the Authentication tab, enter the following information:

    Field

    Required

    Description

    Override Authentication Settings

    N

    Enable to override authentication settings set up in Authentication.

    Note: This option is disabled by default.

    SSO IDP Entity URL

    Y

    Enter the IDP Entity URL (ID) or URN for SAML provided by the IDP server.

    IDP Sign On Service Endpoint URL

    Y

    Enter the endpoint URL for IDP (Post) provided by the IDP server.

    IDP Sign On Service Redirect Endpoint URL

    Y

    Enter the endpoint URL for IDP (Redirect) provided by the IDP server.

    IDP Logout Service Endpoint

    Y

    Enter the IDP logout URL provided by IDP.

    SSO Certificate

    Y

    Enter the certificate provided by the IDP to decrypt the signed response.

    View/Change SSO Roles

    Click to map the SSO roles with the local profiles.

  2. Click Save.

    Click Reset to reset entries and selections in the form.

    Click Cancel to exit without saving.