Technical Tip: Significance of auth timeout and login session timeout when FortiAuthenticator acting as a IDP
| Description | This article describes the significance of auth timeout and login session timeout when FortiAuthenticator is acting as an IDP |
| Scope | FortiGate, FortiAuthenticator. |
| Solution | When configuring FortiAuthenticator as an IDP two timers should be taken into consideration.
Once gstatic packet comes to FortiGate, it redirects it to IDP, but before redirecting, it checks the firewall auth list, if user-IP mapping is present it evaluates the configured group-based policy.
Verify the SAMA session under Authentication -> SAML IDP session. |

