cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
406
Views
0
Helpful
2
Replies

Umbrella SSO EntityID

nickp214
Level 1
Level 1

Hello,

I am configuring SAML SSO in Umbrella portal.

In the portal the metadata to add to my IDP uses EntityID "https://login.umbrella.com/sso"

This works correctly when I test my SSO configuration.

But when I update my IDP to use the Umbrella metadata URL https://api.umbrella.com/admin/v2/samlsp/certificates/Cisco_Umbrella_SP_Metadata.xml the EntityID in that metadata is "saml.gateway.id.swg.umbrella.com" and SSO breaks after an update.

Running a SAML trace I can see in the samlp AuthRequest that the AssertionConsumerServiceURL is "https://login.umbrella.com/sso" which does not match the EntityID in the metadata URL.

Has anyone gotten SSO to work correctly when using the Umbrella Fixed Metadata URL?

https://docs.umbrella.com/umbrella-user-guide/docs/saml-certificate-renewal-options

 

2 Replies 2

SSO for users? Or just the management?

Just Management