Skip to main content
Infotech22
Explorer III
April 23, 2024
Question

FortiGate SSL / Integration with Azure for MFA

  • April 23, 2024
  • 7 replies
  • 3040 views

Hello Fortinet people,
I'm currently researching a way of clearing the cache after user login/logoff from FortiClient over SAML login.

 

 

 

Solutions I already tied:

  1. Tried with on disconnect script over FortIEMS but no results, I'm not asked for Microsoft login.
  2. Tried manually deleting cookies from User's AppData, no results.
  3. Shuting down the FortiClient, still no results.

 

We don't have Premium licenses on Azure so I can't use Conditional Access to configure it there.

 

Does anybody have some solutions?

 

7 replies

Hong_FTNT
Staff & Editor
Staff & Editor
April 23, 2024

Hi @Infotech22,

 

Please refer to this article and make sure your on disconnect script is correct: https://community.fortinet.com/t5/FortiGate/Technical-Tip-FortiClient-Caching-SSL-VPN-SAML-Authentic...

 

Also make sure that the following values are disabled:

 

<save_username>0</save_username> 
<show_remember_password>0</show_remember_password> 

<dont_modify_cookies>0</dont_modify_cookies>

 

Regards, 

Infotech22
Explorer III
April 24, 2024

Hi @hbac,

I already tried all the steps they suggested on that link.
And still have the same problem.

Hong_FTNT
Staff & Editor
Staff & Editor
April 24, 2024

@Infotech22,

 

Are you using "Use external browser as user-agent for saml user authentication" option? 

 

Regards, 

Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!