Chapter 3 Authentication for FortiOS 5.0 : SSO using a FortiAuthenticator unit : Configuring the FortiClient SSO Mobility Agent
  
Configuring the FortiClient SSO Mobility Agent
The user’s device must have FortiClient Endpoint Security v5.0 installed. Only two pieces of information are required to set up the SSO Mobility Agent feature: the FortiAuthenticator unit IP address and the preshared secret.
The user needs to know the FortiAuthenticator IP address and preshared secret to set up the SSO Mobility Agent. Or, you could preconfigure FortiClient
To configure FortiClient SSO Mobility Agent
1. In FortiClient Endpoint Security, go to File > Settings.
You must run the FortiClient application as an administrator to access these settings.
2. Select Enable single sign-on mobility agent. Enter the FortiAuthenticator unit IP address, including the listening port number specified on the FortiAuthenticator unit.
Example: 192.168.0.99:8001. You can omit the port number if it is 8005.
3. Enter the preshared key.
Select OK.