Description This article describes how to launch secrets when using
Target only templates on FortiPAM. Scope FortiPAM, FortiSRA. Solution A
target is a server/device with a privileged account that supports Web,
SSH, RDP or other administrative protoc...
Description This article describes how to create secured FSSO connector
FortiGate and FortiTrust Identity using certificates. Scope FortiTrust
Identity, FortiGate. Solution External connectors in FortiGate devices
are essential for expanding network ...
Description This article describes how to change passwords for Windows
domain user through FortiPAM. Scope FortiPAM. Solution FortiPAM allows
changing passwords manually in secrets using different templates like
Windows Domain Account, Windows Machin...
Description This article describes how to perform basic troubleshooting
of secret launching in FortiPAM. Scope FortiPAM, FortiSRA. Solution In
FortiPAM a Secret contains all the parameters required to connect to a
target system. Parameters such as th...
Description This article describes the possibilities of upgrading the
firmware on FortiPAM from GUI and CLI. While the GUI upgrade is commonly
used, it is also possible to upgrade the FortiPAM image through the
FTP/TFTP server. Scope FortiPAM, FortiS...
Hi @shree083 By default when there is an request toward FGT ,FGT first
will check local user database than if user is not found there ,will
check whichever server reply first LDAP or Radius server then will
proceed to authenticate user. So you have t...
Hi @mclut Check this guide below it might help, in this case is used FAC
as SAML IDP.
https://docs.fortinet.com/document/fortigate/7.6.2/administration-guide/259754/ztna-application-gateway-with-saml-and-mfa-using-fortiauthenticator-example
Hi @ilcigno How are these user authenticated , do you have any captive
portal in place for active authentication, or they are using passive
authentication like FSSO?
Hi @yeowkm99 You can run some packet capture or to run debug commands on
FGT side ,please check the following KBs that might help.
https://community.fortinet.com/t5/FortiGate/Technical-Tip-FortiGate-and-syslog-communication-check/ta-p/189407
https://...