Forum Discussion
dp_119903
Oct 05, 2015Cirrostratus
Multiple SSO Methods - or a better way to fill in a form?
I have an access policy that I'm using NTLM SSO on. I have users from multiple domains authenticating and accessing a sharepoint site. My access policy is pretty simple. I have a decision tree (as...
Kevin_Stewart
Oct 05, 2015Employee
That's absolutely correct. Since you're client is directly accessing an external resource, you can't auto-submit credentials to that site. The better option, if the external IdP can do it, is to have it encrypt the client's credentials back into the assertion. Or better enable artifact mode so that these credentials aren't in the client's data path. Otherwise you might have to re-investigate using Kerberos if you don't have a password.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects