FortiWeb
A FortiWeb can be configured to join a Security Fabric through the root or downstream FortiGate.
Khidzir_MN
Staff
Staff
Article Id 301780
Description This article describes how to configure SAML SSO login for FortiWeb Administrators with Microsoft Entra ID.
Scope FortiWeb and FortiWeb VM.
Solution

Step 1: Configure the FortiWeb Fabric Connector (Security Fabric -> Fabric Connectors) setting and the respective Microsoft Entra SSO setting.

 

configure_fabric.png

 

Step 2: Download the IDP Certificate from the Microsoft Entra ID and upload it onto the FortiWeb.

 

idp_cert.png

 

Step 3: Create and/or assign a user at the Microsoft Entra ID for the SSO login.

 

entra_assign_user.png

 

Step 4: Login via Single Sign-On to the FortiWeb using the user credential created and/or assigned in Step 3.

 

fwb_sso_login.png

 

sso_first_login.png

 

Step 5: Logout from the FortiWeb.

 

Step 6: Log in to the FortiWeb as a regular admin and assign the respective SSO user the respective Access Profile (System -> Admin -> Administrator).

 

admin_profile.png

 

Step 7: Relogin via Single Sign-On to the FortiWeb using the respective SSO user and verify the Access Profile is correct.