We followed the above link to setup SSO for AnyConnect VPN. Authentication is successful in EntraID but the VPN is failing to connect.
On Running Debug logs, we get the below error messages.
'' [SAML] consume_assertion: authorization attribtues found in SAML response. Processing of SAML response attributes is not supported on this platform ''
I have a similar problem which is raised and pending with CISCO side. With SAML tracer we were able to confirm attributes are sent to the ASA which is not able to process.
I suggest you do the same
Learn, share, save
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.