May 23, 2019

Front-Ending Azure with a BIG-IP LTM



In order to implement device management with Azure, we cannot use federation. That is, we can't use our standard SAML identity provider for user authentication.


To get around this, I was wondering if it was possible to configure the BIG-IP such that:


- User authentication goes to a URL in which we've enabled federation (i.e., SAML) authentication.


- Intune and device management requests bypass this URL and go to the Microsoft SSO URL, and then, after SSO, the device communicates directly with Azure.


Have any of you tried this? This would be super-awesome if I could get it to work!


Most cordially,

Jack Stewart

University of Michigan

No RepliesBe the first to reply