<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Dashboard SSO - AzureAD &amp; External Guest Users in Cloud Networking Platform</title>
    <link>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415309#M5124</link>
    <description>&lt;P&gt;This did it!!! We now have our external guest users who have non-saml accounts in other meraki tenants able to sign in!&lt;BR /&gt;&lt;BR /&gt;Thank you!!!&lt;/P&gt;</description>
    <pubDate>Thu, 09 May 2024 21:40:11 GMT</pubDate>
    <dc:creator>Christian_S</dc:creator>
    <dc:date>2024-05-09T21:40:11Z</dc:date>
    <item>
      <title>Dashboard SSO - AzureAD &amp; External Guest Users</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415302#M5117</link>
      <description>&lt;P data-unlink="true"&gt;We are running into an issue where some of our guest users (vendors) can't access our tenant via SSO. SSO works flawless for a handful of our vendors that do not use AzureAD and their guest accounts show up as username&lt;SPAN&gt;#EXT#@domain.onmicrosoft.com in the SAML sign in logs. However, the accounts that do have Microsoft accounts and use Meraki at their company, show up as their normal username@domain.com  address and will get the login error of "Found existing non-saml user with email username@domain.com". Even though they are not an admin in my tenant, I assume that error is somehow seeing their email in their tenant. &lt;BR /&gt;&lt;BR /&gt;What can I change in my SAML config in Azure Apps to prevent this from happening? Setting the user up as a non-saml administrator is not an option in this case. &lt;BR /&gt;&lt;BR /&gt;Current configuration:&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Christian_S_0-1715278018179.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263524iD5BE8DB4FABB36A5/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P data-unlink="true"&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 09 May 2024 18:03:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415302#M5117</guid>
      <dc:creator>Christian_S</dc:creator>
      <dc:date>2024-05-09T18:03:19Z</dc:date>
    </item>
    <item>
      <title>Re: Dashboard SSO - AzureAD &amp; External Guest Users</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415303#M5118</link>
      <description>&lt;P&gt;Here you can find some possible solutions.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;A href="https://stackoverflow.com/questions/72116842/how-to-configuring-azure-ad-sso-to-allow-guest-logins" target="_blank" rel="nofollow noopener noreferrer"&gt;single sign on - How to configuring Azure AD sso to allow guest logins - Stack Overflow&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://learn.microsoft.com/en-us/entra/identity-platform/saml-claims-customization" target="_blank" rel="nofollow noopener noreferrer"&gt;Customize SAML token claims - Microsoft identity platform | Microsoft Learn&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 09 May 2024 18:10:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415303#M5118</guid>
      <dc:creator>aleabrahao</dc:creator>
      <dc:date>2024-05-09T18:10:49Z</dc:date>
    </item>
    <item>
      <title>Re: Dashboard SSO - AzureAD &amp; External Guest Users</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415304#M5119</link>
      <description>&lt;P&gt;I appreciate the quick response. The first link doesn't help as we already have guest users who CAN sign in. The issue is specific to a certain type of user as mentioned above. &lt;BR /&gt;&lt;BR /&gt;I am currently reviewing the second documentation. &lt;/P&gt;</description>
      <pubDate>Thu, 09 May 2024 18:14:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415304#M5119</guid>
      <dc:creator>Christian_S</dc:creator>
      <dc:date>2024-05-09T18:14:35Z</dc:date>
    </item>
    <item>
      <title>Re: Dashboard SSO - AzureAD &amp; External Guest Users</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415305#M5120</link>
      <description>&lt;P&gt;This is a very common issue.  I tend to fix it by changing the "username" attribute to "user.displayname".&lt;/P&gt;&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="PhilipDAth_0-1715286358038.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263523i828EECFC3EA888AC/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 09 May 2024 20:26:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415305#M5120</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2024-05-09T20:26:17Z</dc:date>
    </item>
    <item>
      <title>Re: Dashboard SSO - AzureAD &amp; External Guest Users</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415306#M5121</link>
      <description>&lt;P&gt;You can't have a SAML user where their email is the same as an email account being used on the Meraki Dashboard, it is not supported.&lt;/P&gt;</description>
      <pubDate>Thu, 09 May 2024 20:27:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415306#M5121</guid>
      <dc:creator>matt_uc</dc:creator>
      <dc:date>2024-05-09T20:27:32Z</dc:date>
    </item>
    <item>
      <title>Re: Dashboard SSO - AzureAD &amp; External Guest Users</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415307#M5122</link>
      <description>&lt;P&gt;Oo! Let me give that a shot and I will report back. Thank you!&lt;/P&gt;</description>
      <pubDate>Thu, 09 May 2024 20:27:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415307#M5122</guid>
      <dc:creator>Christian_S</dc:creator>
      <dc:date>2024-05-09T20:27:45Z</dc:date>
    </item>
    <item>
      <title>Re: Dashboard SSO - AzureAD &amp; External Guest Users</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415308#M5123</link>
      <description>&lt;P&gt;Which is why I am asking here on how to overcome that.&lt;/P&gt;</description>
      <pubDate>Thu, 09 May 2024 20:29:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415308#M5123</guid>
      <dc:creator>Christian_S</dc:creator>
      <dc:date>2024-05-09T20:29:02Z</dc:date>
    </item>
    <item>
      <title>Re: Dashboard SSO - AzureAD &amp; External Guest Users</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415309#M5124</link>
      <description>&lt;P&gt;This did it!!! We now have our external guest users who have non-saml accounts in other meraki tenants able to sign in!&lt;BR /&gt;&lt;BR /&gt;Thank you!!!&lt;/P&gt;</description>
      <pubDate>Thu, 09 May 2024 21:40:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415309#M5124</guid>
      <dc:creator>Christian_S</dc:creator>
      <dc:date>2024-05-09T21:40:11Z</dc:date>
    </item>
    <item>
      <title>Re: Dashboard SSO - AzureAD &amp; External Guest Users</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415310#M5125</link>
      <description>&lt;P&gt;Hi Philip/Meraki Team,&lt;/P&gt;&lt;P&gt;I configured SAML SSO configuration on Meraki dashboard as per provided document after enter Azure AD credentials we are getting Java Scirpte page(html page) &lt;/P&gt;</description>
      <pubDate>Wed, 15 May 2024 15:40:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415310#M5125</guid>
      <dc:creator>VyankateshBollu18163</dc:creator>
      <dc:date>2024-05-15T15:40:46Z</dc:date>
    </item>
    <item>
      <title>Re: Dashboard SSO - AzureAD &amp; External Guest Users</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415311#M5126</link>
      <description>&lt;P&gt;From memory, this happens when the SAML roles are not correctly mapped to Meraki roles.&lt;/P&gt;&lt;P&gt;Go to Organization/Administrators/SAML Login History.  Look for an error there.&lt;/P&gt;&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="PhilipDAth_0-1715799735150.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263525i9DCD67EA7B8C9713/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 15 May 2024 19:02:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/dashboard-sso-azuread-external-guest-users/m-p/5415311#M5126</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2024-05-15T19:02:22Z</dc:date>
    </item>
  </channel>
</rss>

