Created on
10-04-2024
12:03 AM
Edited on
08-26-2025
02:10 AM
By
Anthony_E
This article describes how to configure the ignore user list directly in FortiAuthenticator for FSSO/SSO method.
FortiAuthenticator, FSSO, ignore user list, exempt user in FSSO.
One best practice in FSSO is to set up an ignore user list for service accounts.
Select the Remote LDAP server, and select OK.
A new window will appear, expand the tree, find and select the users to ignore, then select OK.
At the top right in SSO Users, mark the users to ignore and then select Exclude from SSO.
Choose 'Do not affect current user when excluded user logs in' and select OK. Now, those users will appear as excluded from SSO.
In the v6.6 branch:
Select the Remote LDAP server, and select Import.
A new window will appear, expand the tree, find and select the users to ignore, then select OK.
At the top, select SSO Users, mark the users to ignore, and then select Exclude from SSO.
Choose 'Do not affect current user when excluded user logs in' and select OK.
These users will appear as excluded from SSO.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.