- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Fortideceptor sso attibutes
Hi All,
I'm configuring sso authentication on Fortideceptor 5.3 and Azure administrators told me to use NameID as attribute.
In Fortideceptor user guide is specified user.userprincipalname as attibute. Is mandatory to use these attribute?
Thank you
- Labels:
-
FortiDeceptor
-
SSO
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello @vincenzo ,
It depends on your Azure AD configuration. If your AD admin says you need to use NameID you can use that value while configuring Fortideceptor sso.
IdP (AzureAD) will send the username information with this attribute. When you enter this attribute on FortiDeceptor, FortiDeceptor understands this as a username.
NSE 4-5-6-7 OT Sec - ENT FW
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Ozkanaltas,
in effect we are using NameID, but when i try to login I receive a generic error "Error happened while using SAML login. Please try another login method" in log that can't help me to understand where is the error.
I trace the Saml response and I have the confirm that we use NameID.
Reading the admin guide I had a doubt, how does it associate the user login via saml with administrator profile?
Thank you
Vincenzo Stolfi
