Issue with IDP intiated SAML SSO with ADFS 2.0 as relying party


hi,

we have setup saml sso integration between tfim (as idp / claims provider) , adfs2.0 (as sp / relying party) following steps below links,

1. installed , configured wif application using link- https://technet.microsoft.com/en-us/library/adfs2-federation-wif-application-step-by-step-guide(v=ws.10).aspx

2. configured adfs relaying party , ibm tfim claim provider following link-

https://technet.microsoft.com/en-us/library/gg749921(v=ws.10).aspx

3. added wif application relaying party in adfs

with above settings sp initiated sso seems working expected.

but want test idp initiated sso,

as default adfs2.0 behavior ignore relaystate, have added update roll 2 , done changes in web.config given in https://technet.microsoft.com/en-us/library/jj127245(v=ws.10).aspx link.

still if we use target (relaystate) parameter in idp initiated login url, after saml response posted sp (adfs) displays https://<addomain>/adfs/ls/idpinitiatedsignon.aspx page , ignore relaystate.

1. query does our scenario support idp initiated sso?

2. there other settings need relaystate work in adfs 2.0 redirect user wif application after authenticating idp(for idp initiated url)?

hi,

based on description, adfs questions, in order better help, can ask suggestions in following forum.

claims based access platform (cba), code-named geneva

https://social.msdn.microsoft.com/forums/vstudio/en-us/home?forum=geneva

best regards,

frank shen


please remember mark replies answers if , unmark them if provide no help. if have feedback technet subscriber support, contact tnmff@microsoft.com.



Windows Server  >  Directory Services



Comments

Popular posts from this blog

Error: 0x80073701 when trying to add Print Services Role in Windows 2012 Standard

Disconnecting from a Windows Server 2012 R2 file sharing session on a Windows 7,8,10 machine

Event ID 64,77,1008 Certificates Events Windows Server 2008, 2008R2