I'm using EMS 7.0.7 and client 7.0.7
I want to use saml auth with azure AD as the IdP when creating an invitation for user verification. I have my AD domains imported. Azure is setup to be the IdP and the test is successful.
If I add the saml configuration in EMS user management with "None" as the authorization type I can get it to work using a bulk invitation. If I add saml configuration with "LDAP" as the authorization type and assign an imported domain I get an error on the client when connecting the EMS in zero trust telemetry.
It looks to me like the imported domains are using the SamAccountName for the users and the SAML configuration is using the UserPricipalName for the assertion attribute. I'm not sure how to setup the domain identification.
FortiNet does have some documentation on this setup but, it doesn't give allot of information
Has anybody set this up and how did you make it work?
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hello LSI-IT,
Thank you for using the Community Forum.
I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.
Regards,
Hello,
We are still looking for someone to help you.
We will come back to you ASAP.
Regards,
Hello,
I have found this document:
Could you please have a look and tell me if it helped?
Regards,
Created on 11-22-2022 06:18 AM Edited on 11-22-2022 06:20 AM
Thanks Anthony_E, That document is for configuring SAML on a FortiGate with Azure AD as the IdP. I'm trying to use it on FortiClient EMS. I did get an update this morning from Fortinet support that using Azure AD as the IdP in a SAML connection in EMS will be supported in version 7.2.1 It's a little confusing because the documentation already reads like it's supported. It would still be great to know if anyone else has experienced this issue and what they did to work around it.
Hi LSI-IT,
I am having the same issue, no documentation on it, i am using EMS version 7.0.7.0398
Hello,
Indeed :)!
I will try to find you somebody!
Regards,
I have the same issue. Has anyone found a resolution for this?
I have the same issue, trying to connect to EMS from my FortiClient by using SAML invite
Same Bug here in 7.2.2 :(
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1666 | |
1077 | |
752 | |
446 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.