Skip to main content
mclut
New Member
February 26, 2025
Solved

Is 3rd party SAML provider possible with ZTNA?

  • February 26, 2025
  • 2 replies
  • 720 views

Quick question. 

 

Is it possible to use a SAAS SSO provider such as Okta, MS etc and using SAML? This is our current setup for VPN, but there seems to be a hitch when you need to involve Authentication rules because of the interface and protocol preference.

 

Is the LDAP portion required for this? And not just relying upon the SP user data base? 

Best answer by mclut

So the issue is a "bug" but no yet acknowledged.

 

Issues arise with modification of the SAML user and whether or not the ZTNA server is created before or after this.

 

This is not working as intended as of this time and testing on multiple versions of FCT. 7.2.0 --- 7.2.8

The work around is to re-create the SAML User and ZTNA server/s.

2 replies

rbraha
Staff
Staff
February 27, 2025
mclut
mclutAuthorAnswer
New Member
March 18, 2025

So the issue is a "bug" but no yet acknowledged.

 

Issues arise with modification of the SAML user and whether or not the ZTNA server is created before or after this.

 

This is not working as intended as of this time and testing on multiple versions of FCT. 7.2.0 --- 7.2.8

The work around is to re-create the SAML User and ZTNA server/s.

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!