Forum Discussion
igorzhuk
Altostratus
Jun 10, 2018Saml SSO 4 SP with same IDP
My Big IP As SP
I have 4 VS configured with APM saml SSO
Every VS configured with Saml SP Services
all the SP services bind to same IDP connector
when USER accept in APM they can move to another ...
youssef1
Cumulonimbus
Jun 10, 2018Hi Igor.
In fact it's a normal behaviour. You have 4 Service provider bind to the same IDP (authentication federation).
According to the timeout that you set on your IDP, all SP don't need authentication while IDP session is still alive.
So the behaviour that you indicate is normal and wanted in this kind of architecture.
But If I understand, you want that user have to re-authenticate for each application? In this case why thou federated authentication?
Regards
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
