Monday, May 11, 2026

FortiSASE onboard - On going

FortiSASE Cloud Security tunnel advanced settings
- turn on will cause reconnect all Endpoint

IPAM IP allocation
- I tried tune till /24 it doesnt work
- At least require /20



For Azure Group, even my id doesnt belong more then 150 group FortiSASE unable match my group object ID


FortiSASE azure group id object doesnt match

herewith the document

https://community.fortinet.com/fortigate-3/technical-tip-understanding-the-limitation-of-150-assertions-from-microsoft-azure-as-saml-idp-that-may-cause-group-mismatch-in-fortigate-138837



Even selected security group doesnt help, only method 3 work well for me



Click on group
rename any name
then change name on SSO at FortiSASE

No comments:

Post a Comment