Hi All,
We have successfully implemented SAML authentication with Azure from FGT 120G cluster running 7.2.11.
It works without any issue from the edge browser for all the tested users.
But from the chrome after the Azure login page is prompted and after adding the credentials it is going to a URL looping.It loops between the local IP (https:192.168.50.254/saml/****) and login.microsoftonline.com (https://login.microsoftonline.com/****) URLs.
For some couple of users it works with chrome too.
Checked adding after the SSL user certificate into chrome but no luck.
Any idea for a workaround or solution for this issue?
Thanks
Hi,
Could you please provide more details about what kind of service you're using SAML authentication for, such as SSL VPN or IPsec VPN?
Thanks
For a little more information, I have this happening on a brand new Windows 11 install on my own laptop that's Azure AD joined only and I am only using a Yubikey for MFA and windows hello.
Hi @nsm
Can you provide the SAML debug log form the FGT ?
> diag debug enable
> diag debug application samld -1
And the SAML configuration used ?
You can also use the "SAML Tracer" AddOn on the browser to check the SAML workflow.
Perhaps a loop with the redirect URLs used in the FGT or Azure
Thanks
User | Count |
---|---|
2592 | |
1380 | |
800 | |
659 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.