Forum Discussion
SSO Domain Question
Hi,
Some of our remote APM users sign on to their workstations using a local domain/uid/password. The resources they access are behind a completely different and unrelated (ie no trust, totally segregated) AD domain (a corp domain if you will). They have to log in to a full webtop using the corp credentials that they have, and that is fine. The problem I have is with SSO. When they access a protected portal resource like OWA, they seem to connect in the context of the local domain and SSO doesn't work.
When I test access from my corp workstation, it works fine. Is there a way for me to use SSO under these circumstances? How can I force the remote workstation to submit credentials in the context of the corp domain?
Thanks, Mike
YOu can use the Variable Assign action in the Visual Policy Editor on your policy to set the correct values for Domain, Username and Password (provided you have these), right before the SSO Credentials Mapping action.
SSO takes it's credentials from predefined (and configurable) session variables, so as long as you can set those variables, you can SSO to pretty much any auth domain you fancy.
- BinaryCanary_19Historic F5 Account
YOu can use the Variable Assign action in the Visual Policy Editor on your policy to set the correct values for Domain, Username and Password (provided you have these), right before the SSO Credentials Mapping action.
SSO takes it's credentials from predefined (and configurable) session variables, so as long as you can set those variables, you can SSO to pretty much any auth domain you fancy.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com