Skip to main content
vbarrios
Staff
Staff
December 26, 2024

Technical Tip: SSL VPN debug error 'sslvpn_login_unknown_user' in SAML deployment

  • December 26, 2024
  • 0 replies
  • 2030 views
Description This article describes a common reason for the error 'sslvpn_login_unknown_user' in SSL VPN with SAML integration setup.
Scope FortiGate.
Solution

After discarding other possible reasons documented at:Troubleshooting Tip: SSL VPN Debugs Error: 'sslvpn_login_unknown_user' a very common issue is that the client (FortiClient) is not configured to force the authentication using SAML so it will try to authenticate the user local and fails due to the account only exist in the SAML Active directory. 

 

When the error in question appears in the debug, make sure the Enable SSO box is checked:

 

RA.jpg