Download Forticlient:

Here you can download the Fortigate client needed for vpn

https://links.fortinet.com/forticlient/win/vpnagent

 

Configuring SSO for Forticlient with Royal Koopmans VPN

To use the Fortieclient for the Royal Koopmans Connection, certain configuration steps are required.

This is the manual that helps to configure those settings.

  1. Open de Forticlient Console 
  2. Click on the three lines beside the field “VPN Name”  and choose for “Add a new connection”
  3. Enter the following settings:

VPN: SSL-VPN

Connection Name: Koopmans VPN

Description: Add a description if desired

Remote Gateway: https://vpn.royalkoopmans.net/Suppliers

Single Sign On Settings: Check the box to enable

  1. Hit “Save”. The Profile is now ready to use

Figuur 1: Settings Forticlient

  1. The Forticlient is now configured and ready for use
  2. The user will now see a single large button on the screen labeled "Connect." Clicking this will open a Microsoft screen, where the user must first enter their username (@royalkoopmans.com) and password. If MFA is enabled, a prompt will then appear to confirm the Authenticator code on the phone.

 

Note: As soon as the user clicks the "Connect" button, a timer starts running. This timer is also displayed on the Forticlient screen. The entire process must be completed within this timer. This is related to the session timeout between the Fortigate and Azure AD.