Forum Discussion
Remote desktop application - sso drops domain
I have configured Remote Desktops under Application Access, in the configuration I selected Single Sign-on. I created an Access Policy, assigned the Advanced resource. All is good except the domain information is dropped for single sign-on. If I don't select single sign-on, I get the expected results, I must sign-in, the domain is present, just need to enter the user name.
Is there something I need in the access policy, as well as the application configuration for the domain?
I'm running 12.1.2
6 Replies
- kunjan
Nimbostratus
When you do sessiondump do you see the session.logon.last.domain value? Is it captured during logon?
- The-messenger
Cirrostratus
Thanks kunjan - your thought is correct, I am not capturing the domain during logon. I believe I should see the domain when I do a sessiondump and grep sessionkey.session.logon.last.username|sessionkey.session.logon.last.domain I get the username but not the domain name.
- The-messenger
Cirrostratus
With 12.1 and the sso addition to the remote desktop application config, I didn't think I would need a variable-assign to grab the domain. Just to see if that was the issue, I tried adding a variable assign to grab the domain name session.logon.last.domain = expr { "domainname" }. RDP is still trying to use the local desktop name as the domain name.
- kunjan_118660
Cumulonimbus
When you do sessiondump do you see the session.logon.last.domain value? Is it captured during logon?
- The-messenger
Cirrostratus
Thanks kunjan - your thought is correct, I am not capturing the domain during logon. I believe I should see the domain when I do a sessiondump and grep sessionkey.session.logon.last.username|sessionkey.session.logon.last.domain I get the username but not the domain name.
- The-messenger
Cirrostratus
With 12.1 and the sso addition to the remote desktop application config, I didn't think I would need a variable-assign to grab the domain. Just to see if that was the issue, I tried adding a variable assign to grab the domain name session.logon.last.domain = expr { "domainname" }. RDP is still trying to use the local desktop name as the domain name.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com