Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Here we assume you have already set the appropriate Fabric Connector configurations.  This guide will only explain how to configure the SAML SP and IDP settings.

Section
bordertrue


Column

Log in to the root FortiGate.


Go to Security Fabric > Fabric Connectors and double-click the Security Fabric Setup card.



Column
width50%


Panel
borderColor#9EBEE5
bgColor#f0f0f0
borderWidth1px




...

Section
bordertrue


Column

In the Fabric Connector Edit screen go down to where it says SAL SAML Single Sign-On and click Advance Options



Column
width50%


Panel
borderColor#9EBEE5
bgColor#f0f0f0
borderWidth1px



...

Section
bordertrue


Column

In the SAML SSO Window Specify the SP address.  This is essentially the URL or the IP address of the Fortinet UI you wish to log onto.


Expand SP details


Column
width50%


Panel
borderColor#9EBEE5
bgColor#f0f0f0
borderWidth1px

 

Log back in. to the DualShield Admin Console

...

bordertrue
Column

Go to SSO>Service Providers

...

width50%
Panel
borderColor#9EBEE5
bgColor#f0f0f0
borderWidth1px

Image Removed

Click on Image Removed on the top right.

Section
bordertrue
Column

Fill in the details as per screenshot on right and make sure you select SAML 2.0(Without Metadata) as Type.

Column
width50%
Panel
borderColor#9EBEE5
bgColor#f0f0f0
borderWidth1px

Image Removed

Section
bordertrue
Column
Section
bordertrue
Column

Go to SSO>SSO Servers

Column
width50%
Image Removed Section
bordertrue
Column

Select the drop down menu corresponding to the SSO server you will be using and click on Download IDP Metadata.

Column
width50%
Copy and Paste the Entity ID, ACS and Logout URL

 

from the SP details on the Fortinet UI (see above)
Column
width50%
Panel
borderColor#9EBEE5
bgColor#f0f0f0
borderWidth1px

Image Removed

Section
bordertrue
Column

The completed Service Provider dialogue box will look like this:

Column
width50%
Panel
borderColor#9EBEE5
bgColor#f0f0f0
borderWidth1px

Image Removed

Section
bordertrue
Column

Click on Attributes at the top

Column
width50%
Panel
borderColor#9EBEE5
bgColor#f0f0f0
borderWidth1px

Image Removed

Section
bordertrue
Column

Select the drop down menu corresponding to the SSO server you will be using and click on Download IDP Metadata.

Column
width50%
Panel
borderColor#9EBEE5
bgColor#f0f0f0
borderWidth1px

Image Removed

Download the IDP Metadata file.

Panel
borderColor#9EBEE5
bgColor#f0f0f0
borderWidth1px

Image Removed