Created on
08-04-2024
05:08 PM
Edited on
11-05-2024
07:04 AM
By
Jean-Philippe_P
Description |
This article describes how to fix two errors that may occur in SSL VPN configurations with SAML authentication for MFA on Azure Entra.
|
Scope | FortiGate - SSL VPN - SSO - Azure Entra. |
Solution |
set user-name “username” set group-name “groups” ………… next end
diagnose debug reset diagnose debug application sslvpn -1 diagnose debug application fnbamd -1 diagnose debug application saml -1 diagnose debug console timestamp enable diagnose debug enable
It is also possible to see what Azure has configured in the group value by running a SAML debug and completing a login. Run the above commands, and output such as below would be visible:
For a more complete guide on troubleshooting SAML issues with SSL VPN, visit the following URL: Troubleshooting Tip: Companion for troubleshooting SSL VPN with SAML Authentication. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.