FortiClient
FortiClient proactively defends against advanced attacks. Its tight integration with the Security Fabric enables policy-based automation to contain threats and control outbreaks. FortiClient is compatible with Fabric-Ready partners to further strengthen enterprises’ security posture.
cravikumar
Staff
Staff
Article Id 294710
Description

This article describes how to resolve an error that occurs when attempting to log in with SAML SSL VPN. The browser shows the following error message:

 

Forbidden

 

You don’t have permission to access /remote/saml/start on this server.

 

Additionally, a 403 Forbidden error was encountered while trying to use an ErrorDocument to handle the request.

 

Forbidden.png

Scope FortiClient, FortiGate.
Solution

Clear browser cache/cookies/history and enable the 'Use external browser as user-agent for SAML user authentication' option on the FortiClient.

 

Forbidden-Sol.png

Contributors