Wireless Authentication using SAML Credentials and Azure as IdP
Hello
I have a problem when once logged in with the Azure user I am redirected to the Fortinet captive portal -> https://portal.mydomain.com:1003/saml/login, I get the following error in the browser:
Your connection is not private NET:ERR_AUTHORITY_INVALID
I have a wildcard certificate installed in the forti *.mydomain.com
Under "User & Authentication" -> Authentication Settings I have FQDN checked and under "Certificate" I have the wildcard certificate.
In protocol settings I have checked all protocols
Authentication Scheme, Captivce portal and HTTP redirect are unchecked (I don't know if they have to be checked).
Under User&Authentication -> Single Sig-ON ->Single Sing-On configuration, I have the option certificate -> MyCertificate Wildcard checked.
In this Forti version I could not apply the following configuration because of the IOS version:
config wireless-controller vap
edit "SAML-WiFi"
set auth-cert "My_WildCard" set auth-cert "My_WildCard" set auth-portal-addr "My_WildCard
set auth-portal-addr "portal.mydomain.com"
end
Could this be the reason for the certificate error when redirecting me to the captive portal website?
How can I fix it?
Thanks
Translated with DeepL.com (free version)
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi @guchinife,
Please refer to this article step 7: https://community.fortinet.com/t5/FortiGate/Technical-Tip-Wireless-Authentication-using-SAML-Credent...
Regards,
Hello
Yes, I had already checked this page, but the problem remains.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1643 | |
1069 | |
751 | |
443 | |
210 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.