Forum Discussion

Nova_201357's avatar
Nova_201357
Icon for Nimbostratus rankNimbostratus
Jun 02, 2015

SSO Domain Question

Hi,

 

Some of our remote APM users sign on to their workstations using a local domain/uid/password. The resources they access are behind a completely different and unrelated (ie no trust, totally segregated) AD domain (a corp domain if you will). They have to log in to a full webtop using the corp credentials that they have, and that is fine. The problem I have is with SSO. When they access a protected portal resource like OWA, they seem to connect in the context of the local domain and SSO doesn't work.

 

When I test access from my corp workstation, it works fine. Is there a way for me to use SSO under these circumstances? How can I force the remote workstation to submit credentials in the context of the corp domain?

 

Thanks, Mike

 

  • YOu can use the Variable Assign action in the Visual Policy Editor on your policy to set the correct values for Domain, Username and Password (provided you have these), right before the SSO Credentials Mapping action.

     

    SSO takes it's credentials from predefined (and configurable) session variables, so as long as you can set those variables, you can SSO to pretty much any auth domain you fancy.

     

  • BinaryCanary_19's avatar
    BinaryCanary_19
    Historic F5 Account

    YOu can use the Variable Assign action in the Visual Policy Editor on your policy to set the correct values for Domain, Username and Password (provided you have these), right before the SSO Credentials Mapping action.

     

    SSO takes it's credentials from predefined (and configurable) session variables, so as long as you can set those variables, you can SSO to pretty much any auth domain you fancy.