Forum Discussion

Zohaib_Yousuf's avatar
Zohaib_Yousuf
Copper Contributor
May 05, 2024

Microsoft Entra SSO integration with FortiGate SSL VPN issue

Scenario: Microsoft Entra SSO integration with FortiGate SSL VPN

I am unable to connect via FortiClient vpn version 7.2.x.x.

But when i use FortiClient vpn client version 7.0.x.x.x to connect SSL VPN via Azure ID with SAML Authentication. its connect in 2nd attempt or 3rd attempt every time not in first attempt. In first attempt ask 2FA but not connected. when i try again in 2nd or 3rd attempt so without 2FA prompt just directly connected. is it bug or configuration issue on FortiClient firewall side or Azure FortiGate SSL VPN application side?? please suggest

1 Reply

  • Please try on below:

     

    • Check Logs: Review the Azure AD sign-on logs and FortiGate logs to identify any errors or warnings that might provide more insight into why the connection fails on the first attempt.
    • Update FortiClient: Ensure that both FortiClient and FortiGate are running the latest versions. Sometimes, bugs are fixed in newer releases.
    • Configuration Review: Double-check the SSO configuration on both the Azure side and the FortiGate side. Ensure that the SAML settings are correctly configured and that there are no discrepancies.
    • Clear Cache: Sometimes clearing the cache or temporary files on the client device can resolve connectivity issues.

Resources