- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
how to specify a FAC group for Fortigate administrator login
Hello, I would like to know how to use FortiAuthenticator to configure saml SSO login for Fortigate administrators, and how to specify a FAC group for Fortigate administrator login
Solved! Go to Solution.
- Labels:
-
FortiAuthenticator
-
FortiGate
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi @nplljw ,
1) Configure SAML settings on FortiAuthenticator
2) Please also check this KB:
Jerry
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi @nplljw ,
1) Configure SAML settings on FortiAuthenticator
2) Please also check this KB:
Jerry
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
FortiGate currently does not support group-based or wildcard-admin-based administrator logins with SAML. All authentication is individual, per-user. No support for dynamic VDOM assignment or access profile assignment either.
Restrictions as to who can authenticate can only be imposed from the IdP side. Unfortunately, FortiAuthenticator only allows configuring group-based restrictions on the "global level" for SAML (SAMl IdP > General), not on a per-SP basis. But maybe that will suffice for you?
