FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
vbarrios
Staff
Staff
Article Id 366607
Description This article describes a common reason for the error 'sslvpn_login_unknown_user' in SSL VPN with SAML integration setup.
Scope FortiGate.
Solution

After discarding other possible reasons documented at:Troubleshooting Tip: SSL VPN Debugs Error: 'sslvpn_login_unknown_user' a very common issue is that the client (FortiClient) is not configured to force the authentication using SAML so it will try to authenticate the user local and fails due to the account only exist in the SAML Active directory. 

 

When the error in question appears in the debug, make sure the Enable SSO box is checked:

 

RA.jpg

Contributors