Issue with IDP intiated SAML SSO with ADFS 2.0 as relying party
hi,
we have setup saml sso integration between tfim (as idp / claims provider) , adfs2.0 (as sp / relying party) following steps below links,
1. installed , configured wif application using link- https://technet.microsoft.com/en-us/library/adfs2-federation-wif-application-step-by-step-guide(v=ws.10).aspx
2. configured adfs relaying party , ibm tfim claim provider following link-
https://technet.microsoft.com/en-us/library/gg749921(v=ws.10).aspx
3. added wif application relaying party in adfs
with above settings sp initiated sso seems working expected.
but want test idp initiated sso,
as default adfs2.0 behavior ignore relaystate, have added update roll 2 , done changes in web.config given in https://technet.microsoft.com/en-us/library/jj127245(v=ws.10).aspx link.
still if we use target (relaystate) parameter in idp initiated login url, after saml response posted sp (adfs) displays https://<addomain>/adfs/ls/idpinitiatedsignon.aspx page , ignore relaystate.
1. query does our scenario support idp initiated sso?
2. there other settings need relaystate work in adfs 2.0 redirect user wif application after authenticating idp(for idp initiated url)?
hi,
based on description, adfs questions, in order better help, can ask suggestions in following forum.
claims based access platform (cba), code-named geneva
https://social.msdn.microsoft.com/forums/vstudio/en-us/home?forum=geneva
best regards,
frank shen
please remember mark replies answers if , unmark them if provide no help. if have feedback technet subscriber support, contact tnmff@microsoft.com.
Windows Server > Directory Services
Comments
Post a Comment