FortiManager 7.2.1 - SAML IDR SSO Configuration RSA Ready Implementation Guide
Originally Published: 2023-03-24
This section describes how to integrate FortiManager with RSA Cloud Authentication Service using IDR SSO.
Procedure
- Sign into the RSA Cloud Console, and go to Applications > Application Catalog > Create From Template > SAML Direct.
- Select Identity Router in the Choose where to enable your application section and select Next Step.
- Go to FortiManager System settings > Admin > SAML SSO and select Service Provider (SP) tab as Sinlge Sign-On Mode.
- Under IdP Settings section, select Custom tab, then fill in the IdP Entity ID and IdP Login URL from the Identity Provider URL found from the Application > Connection Profile that was done in the previous step.
Note: You must Override the Identity Provider URL from RSA Cloud to be the full URL instead of the Identity String for it to work - You can choose to automatically create a new user after successful authentication or not from the Auto Create Admin option on the FortiManager SAML SSO page.
- For the IdP Certificate, choose the certificate file from the RSA Cloud Console, whether you have chosen the default certificate or uploaded a new one, it is to be uploaded here to validate the SAML responses sent from RSA.
- In the User Identity section, use NameID as unspecified and property as mail. You must send attribute statement for the FortiManager, it should be username and map it to mail.
- Do one of the following:
- If you have chosen SP-Initiated flow, ensure at the top of the page that the Connection URL is added as the SP ACS (Login) URL.
- If you have chosen it to be IdP-Initiated flow, ensure to add this input in the Connection URL parameter at the top of the page.
- If you have chosen SP-Initiated flow, ensure at the top of the page that the Connection URL is added as the SP ACS (Login) URL.
- Select the Show Advance Configuration dropdown and under the User Access page, select your desired policy to be applied.
- Select Next Step > Save and Finish > Publish Changes.
- In the Portal Display page, if needed, select Display in Portal as FortiManager supports IdP initiated SAML SSO.
Configuration is complete.
Return to the main page.
Related Articles
Microsoft Office 365 - SAML IDR SSO Configuration - RSA Ready Implementation Guide 59Number of Views Delinea - SAML My Page SSO Configuration - RSA Ready Implementation Guide 14Number of Views Microsoft Entra ID - SAML My Page SSO Configuration - RSA Ready Implementation Guide 206Number of Views Nutanix Prism Central - IDR SSO Configuration using SAML - RSA Ready Implementation Guide 39Number of Views Microsoft Office 365 - SAML My Page SSO Configuration - RSA Ready Implementation Guide 118Number of Views
Trending Articles
Downloading RSA Authentication Manager license files or RSA Software token seed records Unable to login to RSA Authentication Manager Security Console as super admin RSA Authentication Manager 8.9 Release Notes (January 2026) How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Connection fails to Cloud Authentication Service when connecting through a proxy server from RSA Authentication Manager to…
Don't see what you're looking for?