Professional Documents
Culture Documents
FORTIGATE - SSO Using LDAP and FSSO Agent in Advanced Mode
FORTIGATE - SSO Using LDAP and FSSO Agent in Advanced Mode
FORTIGATE - SSO Using LDAP and FSSO Agent in Advanced Mode
AUTHENTICATION / EXPERT / FORTIOS 5.2 / FORTIOS 5.2.0 / FORTIOS 5.2.1 / FORTIOS 5.2.2 / FORTIOS
5.2.3 / FORTIOS 5.2.4 / FORTIOS 5.2.5+
This recipe illustrates FortiGate user authentication with FSSO. In this example, user authentication
controls Internet access and applies different security profiles for different users.
https://cookbook.fortinet.com/providing-single-sign-using-ldap-fsso-agent-advanced-mode-expert/index.html 1/7
12/07/2020 Single Sign-On using LDAP and FSSO agent in advanced mode (Expert) – Fortinet Cookbook
https://cookbook.fortinet.com/providing-single-sign-using-ldap-fsso-agent-advanced-mode-expert/index.html 2/7
12/07/2020 Single Sign-On using LDAP and FSSO agent in advanced mode (Expert) – Fortinet Cookbook
https://cookbook.fortinet.com/providing-single-sign-using-ldap-fsso-agent-advanced-mode-expert/index.html 3/7
12/07/2020 Single Sign-On using LDAP and FSSO agent in advanced mode (Expert) – Fortinet Cookbook
https://cookbook.fortinet.com/providing-single-sign-using-ldap-fsso-agent-advanced-mode-expert/index.html 4/7
12/07/2020 Single Sign-On using LDAP and FSSO agent in advanced mode (Expert) – Fortinet Cookbook
9. Results
https://cookbook.fortinet.com/providing-single-sign-using-ldap-fsso-agent-advanced-mode-expert/index.html 5/7
12/07/2020 Single Sign-On using LDAP and FSSO agent in advanced mode (Expert) – Fortinet Cookbook
From the FortiGate, go to System > Status to diagnose debug authd fsso list
look for the CLI Console widget and type this
command for more detail about current ----FSSO logons----
FSSO logons: IP: 10.10.20.3 User: ADMINISTRATOR Groups:
CN=FORTIOS WRITERS,CN=USERS,DC=TECHDOC,DC=LOCAL
Workstation: WIN2K8R2.TECHDOC.LOCAL MemberOf:
FortiOS_Writers
IP: 10.10.20.7 User: TELBAR Groups: CN=FORTIOS
WRITERS,CN=USERS,DC=TECHDOC,DC=LOCAL
Workstation: TELBAR-PC7.TECHDOC.LOCAL MemberOf:
FortiOS_Writers
Total number of logons listed: 2, filtered: 0
----end of FSSO logons----
https://cookbook.fortinet.com/providing-single-sign-using-ldap-fsso-agent-advanced-mode-expert/index.html 6/7
12/07/2020 Single Sign-On using LDAP and FSSO agent in advanced mode (Expert) – Fortinet Cookbook
CONTACT | DOCUMENTATION LIBRARY | CLI PORTAL | FUSE COMMUNITY | VIDEOS | SUPPORT | CORPORATE |
LEGAL
© 2019 Fortinet
https://cookbook.fortinet.com/providing-single-sign-using-ldap-fsso-agent-advanced-mode-expert/index.html 7/7