03-09-2023 07:59 AM
We have successfully configured our CES/Secure Email hosts to use SAML against Azure AD to authenticate our administrative users to access the web GUI for almost two years, and it was worked pretty flawlessly.
Naturally, I was happy to see that they have added the ability to configure SAML for the EUQ, however, the only guidance documentation I can find walks through configuring Okta or walks through the existing configuration I already have in place.
Has anyone configured or have any tips to configure SAML for the EUQ using AAD? Should we just follow, more or less, the same instructions found here: https://docs.ces.cisco.com/docs/saml-authentication
Thanks!
04-13-2023 12:23 AM
Hi Thomas,
The resource link you have shared seems fine so you can test in maintenance windows with a test PC in place.
Here are some suggestions that can help when there issue using SAML
1. Check the SAML configuration settings: Ensure that the SAML configuration settings are correct and match the settings provided by Azure AD. Verify the SAML endpoint URLs, certificate, and other settings.
2. Verify the Azure AD configuration: Check the Azure AD configuration settings and ensure that the SAML settings are correctly configured. Verify the SAML endpoint URLs, certificate, and other settings.
3. Check the firewall settings: Ensure that the firewall settings are not blocking the SAML traffic. Check the firewall logs to see if any SAML traffic is being blocked.
4. Use a SAML testing tool: Use a SAML testing tool to verify the SAML configuration. This will help to identify any issues with the SAML configuration and provide suggestions to resolve them.
5. Contact Cisco support: If the issue persists, contact Cisco support for further assistance. They can help to troubleshoot the issue and provide a solution.
In conclusion, configuring SAML for EUQ using Azure AD can be a complex process, but by following the above suggestions, the issue can be resolved. It is important to ensure that the SAML configuration settings are correct, the Azure AD configuration is verified, the firewall settings are not blocking the SAML traffic, and a SAML testing tool is used to verify the configuration. If the issue persists, contacting Cisco support can provide further assistance.
Thanks,
G.Srinivasan
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide