Created on
09-23-2024
12:40 AM
Edited on
11-18-2025
10:25 PM
By
Jean-Philippe_P
| Description | This article describes how to fix the SAML authentication issue when it fails with the error log 'Missing user-name' in the event logs. |
| Scope | FortiGate. |
| Solution |
The log appears as follows in the GUI:
The issue arises when the username attribute is not properly configured.
The configuration in this scenario looks like the following, with username set to givenname.
config user saml
Configure SAML attribute username/name with the value user.userprincipalname:
Add it under FortiGate SAML config and make sure it matches between IDP and SP. The username attribute must match the Username Attributes & Claims in the Azure portal and on the FortiGate SAML configuration. When the claim name has been modified, the schema format will be automatically added to the claim name.
Related documents: SAML SSO configuration from Web GUI Technical Tip: How to read SAML Debug output Configure FortiGate SSL VPN for Single sign-on with Microsoft Entra ID |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.