Forum Discussion

M_Saeed's avatar
M_Saeed
Icon for Cirrus rankCirrus
May 10, 2025
Solved

APM Access Policy|SSLVPN | SAML auth questionnaires

Hello All,

I had a conversation wiht tech team, they asking about APM login auth via SAML.
We are deploying SSLVPN and we have specific EPS checks and MFA. 

I have confirmed that in such approach we can't auth login via SAML, as it is at the end a web based auth for a web services. Our deployment is based on edge client and we have a security posture to append.

 

I'm totally aware of such point, however  we are in brainstorm mode here for such discussion
any expert had any update or idea here ?

 

It was long time no see, and I'm glad to return back delivering for the community.

Thank you.

 

 

 

 

  • M_Saeed's avatar
    M_Saeed
    May 13, 2025

    Hello Injeyan,
    Thanks for your highlights. That what came to mind too.

    Yet to proceed and verify it. However If I'm proceeding with SAML assertion I think no need for 2FA as after such assertion I would deliver assigned SSLVPN resources.

3 Replies

  • Edge Client can use an embedded browser to perform SAML and MFA. Of course any EPS checks too

    In the latest client though you can also use default system browser which is far better than Edge Client's embedded browser.

    Have you tried this?

    • M_Saeed's avatar
      M_Saeed
      Icon for Cirrus rankCirrus

      Hello Injeyan,
      Thanks for your highlights. That what came to mind too.

      Yet to proceed and verify it. However If I'm proceeding with SAML assertion I think no need for 2FA as after such assertion I would deliver assigned SSLVPN resources.