Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
HandsonICT
New Contributor

FortiClient SAML VPN issue

Hello everyone,

 

I'm currently having an issue with the SAML SSO option in FortiClient (V7.2.2 -> V7.4). We use the feature "Enable Single Sign On (SSO) for VPN Tunnel" to authenticate. We also enabled the feature "Use external browser as user-agent for saml user authentication". In the past, when signin in, we had the option to choose a microsoft account. Because we have multiple clients that use this configuration, this feature worked great.

 

Since a few days, the button "SAML Login" signs me in with the account that is already signed in (my personal work account). However, this account is not recognized in the tenant of our customers (of course).

 

Are there any other people having this issue? What did you do to resolve it? It seems that the Sign-On URL withing the SSO Configuration is wrong. We need the option to choose between accounts back :).

 

Thanks in advance!

1 REPLY 1
johnathan
Staff
Staff

This is due to the external browser caching your credentials. If you use the internal browser (uncheck that option), you have the option to clear the cookies if you see that issue happen. See https://community.fortinet.com/t5/FortiClient/Technical-Tip-Disabling-auto-caching-on-VPN-login-usin...

"Never trust a computer you can't throw out a window."
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors