| Description |
This article describes the significance of auth timeout and login session timeout when FortiAuthenticator is acting as an IDP |
| Scope | FortiGate, FortiAuthenticator. |
| Solution |
When configuring FortiAuthenticator as an IDP two timers should be taken into consideration.
Once gstatic packet comes to FortiGate, it redirects it to IDP, but before redirecting, it checks the firewall auth list, if user-IP mapping is present it evaluates the configured group-based policy.
Verify the SAMA session under Authentication -> SAML IDP session. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.