Nadi SSO on IIS
-
I have been trying to get both the Miniorange SSO as well as NADI SSO working on my wordpress site but not having any luck.
After following the Configuration Guide for NADI, setting IIS as shows and making sure the userprincipals are working correctly, as well as using the var dump command to verify the REMOTE_USER is populating, it looks like kerberos is functioning correctly for IIS, but I cannot get the SSO function to work. Tested the AD connection and authentication is working with the pulled username when showing the vardump format being used. Login and log out works find manually, but when I enable the SSO, it just returns to the login page. Browser console showed some cookie issues with SAMSITE, but that has been rectified and no longer an issue.
The server is Windows server 2019 joined to a Windows AD domain and running IIS 10. We have an internal enterprise CA that is trusted by all workstations and valid SSL certificates. I have tried configuring IE, Firefox, Chrome, and Edge as per the docs, but nothing seems to get through. Kind of scratching my head on this one.
Edit: The SSO seems to work sometimes, but not others. Was looking through the debug log and I see it is authenticating, but the issue seems to come when a user explicitly logs out via clicking the link to log out. Maybe I am not understanding what is happening.
- The topic ‘Nadi SSO on IIS’ is closed to new replies.