Hi support,
am currently preparing the deployment of FortiPAM for SSL VPN access. Today, users authenticate with username + password + a token generated by FortiAuthenticator. FortiPAM is also integrated with the FortiAuthenticator.
My question is: how can I change the configuration so that when a user connects through the SSL VPN (username + password + token), the authentication is redirected to FortiPAM, and once inside FortiPAM, the user is not asked to enter the token again since they are already authenticated through FortiAuthenticator?
Br
Hi Amine
For SAML SSO FortiPAM and FortiGate should be configured as SP with FAC as IdP.
Hope it helps.
Thanks, it works.
| User | Count |
|---|---|
| 2841 | |
| 1436 | |
| 812 | |
| 801 | |
| 455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.