08-10-2019 07:05 AM
I tried to integrate the DUO with vCloud director,however after integration im getting the below error.
Thanks,
Manivel R
08-10-2019 07:21 AM
تكملة النقاش من DAG integration with vCloud director:
08-12-2019 11:09 AM
That’s not quite enough information to figure out what’s going on. Check out this knowledge base article to learn how to enable debug logging in the Duo Access Gateway, and then take a look at the logs to see what is happening. Search the knowledge base for any errors you see in your log and you may find additional guidance.
If you need help interpreting the logs or want assisted troubleshooting, please contact Duo Support.
08-21-2019 02:45 AM
Hi Kristina,
We fixed most of the issues except one issue.Please suggest.
Process
When i try to login the vCloud director,
Error is SAML authentication failed for this organization.
Thanks,
Manivel R
08-21-2019 09:23 AM
Thanks for the additional information about the steps you’re taking. Are you trying to use BOTH Duo Access Gateway and AD FS at the same time? Your process is a bit confusing.
Are you pointing DAG to AD FS as a SAML authentication source, or are you pointing DAG to the same AD used by AD FS as an LDAP authentication source? Either way, there should be no federation redirect from vCloud Director to AD FS once you have introduced DAG to the login path, so I am not sure why you would upload anything from vCloud Director to AD FS (unless I am misunderstanding your step 3).
Are you following the vCloud directions here? Did you map the attributes specified in the second paragraph? Note that the Duo generic SAML application doesn’t support sending group information today.
The answer likely lies in the vCloud logs. Somewhere it should tell you why exactly it is rejecting the SSO login, and you could take that information and work backwards to adjust the SSO config accordingly.
Since your configuration and issues are complex, you should consider contacting Duo Support. This community isn’t
08-21-2019 10:02 AM
Thanks for the update.I have already raised a case and waiting for update.
I like to achieve this one.
AD is my identity provider.
1st authentication is AD credentials
2nd auth is DUO push.
After that,my vcloud director should login.
This DUO is bit confusing.
From DAG admin console, JSON file should import and upload on DAG.
I see in DAG,there is one xml file.I uploaded that xml file in vCloud director.
I just integrated my DAG in to AD(i tried out this way as well).
1st and 2nd auth are successful and in the final stage,SAML auth failed error message.
Which means, we no need to do any configuration(in ADFS) for SAML auth ?
Correct me if im wrong.
Thanks,
Manivel R
09-16-2019 11:40 PM
Its fixed.
Thank you,
Manivel RR
09-24-2019 02:05 PM
@manivel what was your solution please?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide