Fortinet black logo

Administration Guide

Configuring SAML settings for the FortiSASE application in Azure

Configuring SAML settings for the FortiSASE application in Azure

To configure SAML settings for the FortiSASE application in Azure:
  1. Log into the Azure portal.
  2. Go to Microsoft Entra ID > Enterprise applications.
  3. Select the enterprise application you created previously.
  4. Go to Set up single sign on.
  5. For the SSO method, select SAML.
  6. In Basic SAML Configuration, enter the values that you copied in the FortiAuthenticator Cloud Remote SAML Server in these fields:

    Microsoft Entra ID > Basic SAML Configuration

    FortiAuthenticator Cloud > Edit Remote SAML Server

    Identifier (Entity ID)

    Entity ID

    Reply URL (ACS URL)

    ACS (login) URL

    Sign on URL

    Portal URL

    Logout URL

    SLS (logout) URL

  7. Click Save and click X to close the window.
To collect SAML IdP URL information:

While still in the SAML-based Sign-on page for the enterprise application you created, in the SAML certificates box, do the following:

  1. Download the Certificate (Base64) by clicking Download and selecting a file location for downloading the certificate file.
  2. Download the Federation Metadata XML by clicking Download and selecting a file location for downloading the XML file.

Configuring SAML settings for the FortiSASE application in Azure

To configure SAML settings for the FortiSASE application in Azure:
  1. Log into the Azure portal.
  2. Go to Microsoft Entra ID > Enterprise applications.
  3. Select the enterprise application you created previously.
  4. Go to Set up single sign on.
  5. For the SSO method, select SAML.
  6. In Basic SAML Configuration, enter the values that you copied in the FortiAuthenticator Cloud Remote SAML Server in these fields:

    Microsoft Entra ID > Basic SAML Configuration

    FortiAuthenticator Cloud > Edit Remote SAML Server

    Identifier (Entity ID)

    Entity ID

    Reply URL (ACS URL)

    ACS (login) URL

    Sign on URL

    Portal URL

    Logout URL

    SLS (logout) URL

  7. Click Save and click X to close the window.
To collect SAML IdP URL information:

While still in the SAML-based Sign-on page for the enterprise application you created, in the SAML certificates box, do the following:

  1. Download the Certificate (Base64) by clicking Download and selecting a file location for downloading the certificate file.
  2. Download the Federation Metadata XML by clicking Download and selecting a file location for downloading the XML file.