10-06-2023 10:39 AM
We have an internal application which is accessible on VPN, Currently SAML authentication is configured at application level.
I'm planning to move it off VPN and have it accessible internally as well.
What i have proposed is create an external DNS record have it hit an ip on FTD and then it does destination NAT to FQDN and hits the application where SAML authentication happens
Is it possible to have SAML authenticaton on external IP configured on FTD ? before it enters our network
Flow ---> .com URL--->1.1.1.1--> Hits FW--> Destination NAT happens to APPLICATION -- SAML--> OK
Possible Solution ?
Flow ---> .com URL--->1.1.1.1--> Hits FW-->SAML(OK)--> Destination NAT happens to APPLICATION
10-09-2023 02:50 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide