cancel
Showing results for 
Search instead for 
Did you mean: 

Active Directory Auth to Azure SAML Auth

DaveG
Contributor

Active Directory Auth to Azure SAML Auth

Hi all,

 

I'm planning to change our main authentication from Active Directory onsite to Azure SAML (mainly to take advantage of conditional access policies).

 

My plan is to just update the sign in page authenticaton realm to use the new Azure auth. All the roles have been recreated to use with the new Auth realm

 

Is there anything I'm missing or overlooking though in switching?

1 REPLY 1
zanyterp
Moderator

Re: Active Directory Auth to Azure SAML Auth

are you using group-based authorization/role-mapping or username? if you are doing usernames, make sure that you have made adjustments for the change in saml-based usernames; if you are doing groups, you will need to create custom expressions for all the groups/claims/values and then create new role mapping rules with the new values