Subject: The mailing list for listmasters using Sympa
List archive
[en@sympa] New Sympa build is unable to process Shibboleth SSO session from OKTA
- From: Mickey Bowling <address@concealed>
- To: address@concealed
- Subject: [en@sympa] New Sympa build is unable to process Shibboleth SSO session from OKTA
- Date: Thu, 8 Aug 2024 10:23:08 -0700
Our environment:
OS: Amazon Linux 2
Sympa 6.2.72
Apache 2.4.61
Shibboleth 3.4.1
We are using Shibboleth as the SP for Sympa application. Our IDP is OKTA. I have configured the Sympa OKTA application and Shibboleth to work using SAML2. At the moment I am able to initiate SP authentication (via a login button on Sympa) which takes me to OKTA to authenticate, then pass back over to Sympa and ends up on the home page, but not as the authenticated user.
I have also tried protecting the entire Sympa page by adding that as a protected directory. Doing so redirects me to OKTA when I land on the Sympa page. From there I am able to authenticate and it brings me back to Sympa landing page, but not as the authenticated user, but rather a non user. If a user is not assigned the application in OKTA, then they immediately get a notification that they are not assigned the application.
Does this mean that Shibboleth is getting a valid session from OKTA and Sympa doesn't know how to process this session?
-
[en@sympa] New Sympa build is unable to process Shibboleth SSO session from OKTA,
Mickey Bowling, 08/08/2024
- Re: [en@sympa] New Sympa build is unable to process Shibboleth SSO session from OKTA, Mickey Bowling, 08/12/2024
-
Re: [en@sympa] New Sympa build is unable to process Shibboleth SSO session from OKTA,
IKEDA Soji, 08/13/2024
-
Re: [en@sympa] New Sympa build is unable to process Shibboleth SSO session from OKTA,
Mickey Bowling, 08/13/2024
-
Re: [en@sympa] New Sympa build is unable to process Shibboleth SSO session from OKTA,
IKEDA Soji, 08/14/2024
-
Re: [en@sympa] New Sympa build is unable to process Shibboleth SSO session from OKTA,
Mickey Bowling, 08/14/2024
-
Re: [en@sympa] New Sympa build is unable to process Shibboleth SSO session from OKTA,
IKEDA Soji, 08/16/2024
- [en@sympa] unsubscrbe!, Frank Spade, 08/17/2024
-
Re: [en@sympa] New Sympa build is unable to process Shibboleth SSO session from OKTA,
IKEDA Soji, 08/16/2024
-
Re: [en@sympa] New Sympa build is unable to process Shibboleth SSO session from OKTA,
Mickey Bowling, 08/14/2024
-
Re: [en@sympa] New Sympa build is unable to process Shibboleth SSO session from OKTA,
IKEDA Soji, 08/14/2024
-
Re: [en@sympa] New Sympa build is unable to process Shibboleth SSO session from OKTA,
Mickey Bowling, 08/13/2024
Archive powered by MHonArc 2.6.19+.