Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
IKORE
New Contributor

integrate FortiGate in Azure Ad to deploy userbased Policies.

can we deploy the User Based policies in similar way we were able to do onsite Active Directory integration using SSO. We normally use FSSO agent for that on AD server, how can we do that on Azure. 

PS. I am not talking about forticlient or VPN usage here but actual firewall rulebase using the User Groups. 

1 Solution
rbraha
Staff
Staff

Hi @IKORE 

You will need in this case to user FortiAuthenticator with FSSOMA to connect with Azure ,where SSOMA mobility agent share username and IP with FAC and it listen as SSO session  then it transferred to FGT where you can define user groups on firewall policies. Check this video below it might help understanding. 

 

https://www.youtube.com/watch?v=eMWfDCiHwCQ

View solution in original post

3 REPLIES 3
rbraha
Staff
Staff

Hi @IKORE 

You will need in this case to user FortiAuthenticator with FSSOMA to connect with Azure ,where SSOMA mobility agent share username and IP with FAC and it listen as SSO session  then it transferred to FGT where you can define user groups on firewall policies. Check this video below it might help understanding. 

 

https://www.youtube.com/watch?v=eMWfDCiHwCQ

IKORE
New Contributor

Thank you Do I need to Install rbraha, 

forticlient on each endpoint?

rbraha

Hi @IKORE 

Yes that is required to install FCT on each endpoint for integration with Azure.

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors