Which statement applies to a single sign-on (SSO) deployment on FortiSASE?
Show answer and explanation
Correct answer: D
In aSingle Sign-On (SSO)deployment on FortiSASE,SSO users can be imported into FortiSASE and added to user groups. This allows administrators to manage SSO users within FortiSASE, enabling them to apply policies, permissions, and group-based access controls. By integrating SSO with FortiSASE, organizations can streamline user authentication and simplify access management while maintaining security.
Here's why the other options are incorrect:
A. SSO overrides any other previously configured user authentication:This is incorrect because SSO does
not automatically override other authentication methods. FortiSASE supports multiple authentication mechanisms, and SSO is just one of them. Administrators can configure fallback authentication methods if needed.
B. SSO identity providers can be integrated using public and private access types:While FortiSASE
supports integration with various identity providers (e.g., SAML, LDAP, OAuth), the concept of "public and private access types" is not applicable to SSO configurations.
C. SSO is recommended only for agent-based deployments:This is incorrect because SSO can be used in
both agent-based and agentless deployments. It is not limited to environments where agents are installed.
References:
Fortinet FCSS FortiSASE Documentation - Single Sign-On (SSO) Integration FortiSASE Administration Guide - User Authentication and SSO ================
