By: Chung Kaili user 20 Oct 2021 at 6:07 a.m. CDT

4 Responses
Chung Kaili gravatar
## Expected behavior If connecting for the first time to a SAML/OpenID SP (service provider, hosting any web application), login prompt appears (oxauth). if authenticated correctly, browser redirection to the SP application. If already authenticated, direct redirection to the SP application (default SSO behavior) ## Actual behavior Depending on how the SP you connect first (the one redirecting you to the login prompt) is integrated into GLUU (OpenID/SAML), the behavior is different. If the initial authentication was on a SAML SP, SSO works as expected on SAML and OpenID configured SPs. But if the first authentication was on a OpenID SP, it works as expected for other OpenID SPs but connecting to a SAML SPs for the first time you get redirected to the login prompt. After authenticated again, SAML and OpenID works as expected. ## Example Let's say we have two service providers (SP), one uses GLUU SSO with OpenID (SP1) and the other one with SAML (SP2). I open the browser, go to SP2, make the initial SSO login, open a second window and go to SP1. The automatic SSO login works as expected. Close the browser, reopen it and go to SP1, make the initial SSO login, open a second window and go to SP2. You then get automatically redirected to the initial SSO login page **again**. After authentication SSO works as expected. *Simply summarized:* - Initial login on SAML SP -> Everything works as expected - Initial login on OpenID SP -> Other OpenID SPs work as expected, SAML SPs requires another login via oxauth ## Questions Is this a well know problem? Can I provide you any specific logs, in case you want to investigate this behavior.

By Mohib Zico staff 21 Nov 2021 at 9:49 p.m. CST

Mohib Zico gravatar
Interesting finding. @Mohit.Mali: can we check above use case please?

By Mohit Mali staff 25 Nov 2021 at 12:52 a.m. CST

Mohit Mali gravatar
hi Chung Kaili and Mohib.Zico i'll test this scenario and report you back. Regards Mohit Mali

By Mohit Mali staff 30 Nov 2021 at 6:10 a.m. CST

Mohit Mali gravatar
Hi Chung Kaili i have tested the issue several time but i didn't face such problem, can you send me the logs so i can test it further. Thanks and Regards Mohit Mali.

By Mohib Zico staff 11 Dec 2021 at 8:04 a.m. CST

Mohib Zico gravatar
Please reopen the ticket if required. Thanks!