Forum Discussion
Azure to APM to StoreFront
Need help with setup of Azure SSO to F5 APM to Storefront. I'm trying to pass my Azure credentials to F5 APM and then once authenticated, use that SSO credential to login to storefront. Create the enterprise application in Azure already, then using APM guided configuration. F5 and Azure is connection without issues, but Citrix Store front isn't getting the session and doesn't seems to be connecting. Any help will be greatly appreciated.
- JmtaylorModerator
Hello Chenge,
Have you checked out this article it may provide you some of the missing information.
Configuring BIG-IP APM as OAuth client with Azure AD OAuth authorization server (f5.com)
- Lucas_ThompsonEmployee
Ordinarily you wouldn't pass login credentials (like a password) directly to an SP. Instead, you create a chain of trust so that each SP can send a SAML AuthN to the prior link in the chain, then the prior link sends the next link a SAML Assertion. This avoids the security problems with passing around credentials.
Azure (IdP) -> APM (combined SP and IdP) -> Storefront w/FAS (SP)
This discussion covers federated SAML in this kind of scenario:
Citrix Federated Authentication Service Integration with APM | DevCentral
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com