Hello,
We are very interested in using the SAML portal.
We want to couple it with our Microsoft ADFS infrastructure.
Are there more documentation/debug logs?
On our ADFS Forms based authentication was disabled which resulted in the following error in the eventviewer:
Exception details: Microsoft.IdentityServer.Service.Policy.PolicyServer.Engine.InvalidAuthenticationTypePolicyException: MSIS7102: Requested Authentication Method is not supported on the STS.
The FortiAuthenticator defines in the SAML request which auth method it wants:
<samlp:RequestedAuthnContext Comparison="exact"> <saml:AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:PasswordProtectedTransport</saml:AuthnContextClassRef>
If you do not have Forms based authentication active on your ADFS you get an error.
We would like to use Windows Integrated Authentication on ADFS so users dont have to enter credentials and it is seemless to them.
Is it possible to remove the RequestedAuthnContext?
I know get a webpage to enter my credentials. Authentication succeeds but I get an error on the FortiAuthenticator.
SAML Login portal
Errors:Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
You are seeing what we also saw during our testing of ADFS. There are many different versions and patch levels of ADFS and bewildering array of schemas so obtaining a valid assertion it tricky.
To debug we will require more details about your set up e.g. OS version, ADFS version, and if possible a copy of the SAML request/response. Please open a Support ticket and we will look into this.
>Is it possible to remove the RequestedAuthnContext?
Will replicate and discuss with developers.
Dr. Carl Windsor Field Chief Technology Officer Fortinet
Ok will do thx!
I will reference to this post.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1732 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.