Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
fireon
New Contributor III

SSO with Keycloak SAML

Has anyone ever managed to connect a Fortigate with SSO/SAML using Keycloak? For Login Administrators.

I have already spent many days with it and failed in all directions. UCS is used as the Keycloak backend (LDAP)

Always on /dev/zvol
Always on /dev/zvol
5 REPLIES 5
rbraha
Staff
Staff

Hi @fireon 

Have you checked the below documentation this is used with FMG/FAZ, but it may help to crosscheck with your configurations.

 

https://community.fortinet.com/t5/FortiManager/Technical-Tip-SAML-SSO-Configuration-with-Keycloak/ta...

hbac
Staff
Staff

Hi @fireon,

 

Are you getting any error messages? Are you getting redirected to the SAML login page? Please refer to this article to collect debugs: https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-How-to-troubleshoot-SAML-authenticat...

 

Regards, 

fireon
New Contributor III

Thanks for the links, i will test it next week and give you feedback. 

Always on /dev/zvol
Always on /dev/zvol
Julien_Dbs
New Contributor

Hello Fireon,

 

Have you find a way to do connect your fortigate to keycloak IDP ?

Do you have any advice to share ?

 

Best regards,

Julien

fireon
New Contributor III

Unfortunately not. I also tried to solve it directly with Fortis Support. It is certainly possible, but this would probably require bringing Forti + Keycloak/Univention together and letting them work.

Always on /dev/zvol
Always on /dev/zvol
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors