11-20-2023 03:08 AM
Hi,
we have onboarded ivanti connect secure VPN application on Duo SSO. we found that the users in our active directory without mailbox/email can not login to Duo SSO link. I need your recommendations to fix this issue since we are already in the production with our VPN application.
regards,
11-20-2023 04:55 AM
i would investigate the logs what AD Group is looking here.
11-21-2023 06:02 AM - edited 11-21-2023 06:03 AM
You have some choices:
- Populate the mail attribute with some email address value for the users who don't have one
- Change the default bridge attribute mapping used for <Email Address> to something that is already populated for all users, like userPrincipalName (mentioned in step 4 here).
Feel free to contact Duo Support for more help with this. Note that the previous response does not apply to your issue.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide