Forum Discussion
SAML F5 SP - Microsoft Entra
- Aug 08, 2025
you can use this guide https://my.f5.com/manage/s/article/K53313351
You just need to create a new Authentication Redirect Request under Access ›› Federation : OAuth Client / Resource Server : Request and select it in VPE OAuth config
Clone /Common/MSIdentityPlatform2.0AuthRedirectRequest and just add a new parameter with name login_hint and value %{session.ad.last.attr.userPrincipalName}Should look like this
Hello OM ,
I have done this yes but with OAuth federation and login_hint.
You can use login_hint with SAML too but you have to append it as parameter in saml redirect which will need some irule as you cannot just add "?login_hint=%{session.ad.last.attr.userPrincipalName}" in SAML SSO Service Url
It will be much easier if you do OAuth federation between F5 and Azure
You will still use login_hint but with OAuth you can configure it inside OAuth request.
Let me know if you need help configuring OAuth federation
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
