11-20-2023 03:08 AM
Hi,
we have onboarded ivanti connect secure VPN application on Duo SSO. we found that the users in our active directory without mailbox/email can not login to Duo SSO link. I need your recommendations to fix this issue since we are already in the production with our VPN application.
regards,
11-20-2023 04:55 AM
i would investigate the logs what AD Group is looking here.
11-21-2023 06:02 AM - edited 11-21-2023 06:03 AM
You have some choices:
- Populate the mail attribute with some email address value for the users who don't have one
- Change the default bridge attribute mapping used for <Email Address> to something that is already populated for all users, like userPrincipalName (mentioned in step 4 here).
Feel free to contact Duo Support for more help with this. Note that the previous response does not apply to your issue.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: