cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
484
Views
0
Helpful
5
Replies

Cisco secure access, DUO SAML "Invalid SAML response"

hadi123
Level 1
Level 1

Im getting an error "Invalid SAML response" when trying to enroll users from secure client zta, I have authenticated through duo, I tested the configuration of SAML authentication in Secure access and appears to be completed. Asking assistance on how to resolve the issue of "Invalid SAML response".viber_image_2024-11-22_09-56-18-666.png 

1 Accepted Solution

Accepted Solutions

If its configured as specified - and assuming you dont have anything blocked that is used for the authentication, it should work. Perhaps log a ticket with TAC?

View solution in original post

5 Replies 5

howe
Level 1
Level 1

Hi - are the users also synchronised to the Secure Access Dashboard, via Azure enterprise app or whatever? Have you followed this article? https://docs.sse.cisco.com/sse-user-guide/docs/configure-duo-security-for-saml 

Yes, users connected to Secure Access Dashboard, via Active Directory on prem, and I also followed the article

If its configured as specified - and assuming you dont have anything blocked that is used for the authentication, it should work. Perhaps log a ticket with TAC?

Yes I dont have anything blocked that is used for authentication. When i copy and paste the sso url in web browser I get this issue, and when I try to test it in secure client zta the message is still in "Invalid SAML Response"

hadi123_0-1732587067851.png

 

Darkmatter
Level 1
Level 1

Make sure all necessary domains from the documentation are exempted from HTTPS inspection.

I've experienced the same issue and this was the solution.