Forum Discussion
SAML SP-initiated no redirection
I have setup a BigIP as IdP (SSO Portal) when we do a SP-initiated connection the redirection to the SP after AD auth is not happening. IDP-Initiated works properly from a Webtop/SAML Resource
The browser get stuck at https://login.domain.com/saml/idp/profile/redirectorpost/sso?SAMLRequest=nVNdT9swFP0rkd8dJ2kDw2oqdRS0......
Is there any explanation that would explain why?
In the setup of the IdP service
Is there any problem if the URL of the IdP Entity ID is setup like this? https://login.domain.com/id1
VPE:
2 Replies
- CDG
Nimbostratus
SP-initiated was not working because there was an error in the configuration of the SP Connector.
From the SP metadata...the service provider configured the use=signing and use=encryption with a certificate.
The APM was expecting the SP to include a signature in their AuthN Request for SP-Initiated connections but that was not the case. Modifying the SAML SP Connector/Security Settings/ "Will be signed" from yes to no fixed the problem.
- f5learn_164388
Nimbostratus
Thank you so much for posting this. We were able to fix similar issue we ran into.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
