Skip to main content

Hello!

 

Does Salesforce still support idP-initiated SSO?

 

We currently use idP-intiated SSO for Salesforce with our current idP (Idaptive), but we will be migrating our idP to Microsoft Azure so it works seamlessly with our Office365 subscription.

 

When setting up Azure as the identity provider, the only documentation I've found is for SP-initiated context, and in testing that is the only way I've been able to get it to work. I can "mimic" idp-initiated SSO if I set the Azure login as the only login option.

 

Anything I'm missing?

 

Thanks

6 comentarios
  1. 22 may 2020, 16:26

    Thank you everyone for your help!

    I finally got it

    The built in Salesforce app in Azure requires both an ACS URL and a Sign in URL. When both are present, Salesforce will use SP-initiated login flow.

    I created a custom app in Azure, recreated the SAML trust with Salesforce, and set only the reply URL in Azure.

    It now authenticates in idP-initiated context.

0/9000