Forum Discussion

hiperesfera_364's avatar
hiperesfera_364
Icon for Nimbostratus rankNimbostratus
Apr 10, 2018

F5 APM SAML

Hi

 

I have got SAML federation working in APM (IdP initiated) however one of the requirements is to route everything through the APM Portal instead of redirecting the users to the end web-application.

 

Currently users go to APM, authenticate and click the corresponding link under webtop . APM generates the SAML assertion and then the user gets redirected to the web application, in our case AWS.

 

is it possible to have everything contained within APM URL and avoid any redirections ? I have read that perhaps Portal Access can do the job .

 

Many thanks ! J.

 

1 Reply

  • Hello,

     

    First of you deploy a portal (Webtop) with "SAML Ressources", it will allow you to call your application from your Portal (IDP Initiated). So now you want to manage this SAML ressources as Portal Access in order to hide you SAML App name behind Portal APM hostname.

     

    I really do not think it's possible. I do not see technically how to do it natively.

     

    Additional when your saml response will be send to your IDP the IDP will answer to App hostname and not Portal hostname it will be a confusion. More your Portal VPE will not consume ACS...

     

    Why do you want to deploy this kind of archi?

     

    Regards,