VMware Workspace ONE Community
PaulBrownPaulBr
Contributor
Contributor

SAML Auth, keep local access

What are the chances of me chopping off my access while setting up SAML2 auth for my Workspace ONE console? Is there a way to keep the option of logging in with the local admin account after SAML2 auth is enabled? I'm trying to protect myself from losing access to the console while setting this up, but I'm also trying to make it so that I can still log into the console if our iDP goes crazy.

Labels (1)
0 Kudos
2 Replies
rvodden
Contributor
Contributor

I have done that exactly thing, and its impossible to get support from VMWare (just spent an hour on hold before giving up). I think the thing to do is to create a basic auth account with an email address which will not be in SAML, then you'll be able to get back in if SAML dies.

0 Kudos
Siva_M
Contributor
Contributor

This is how we implemented as well. the only problem is the basic accounts are forced to rest password every 30 days. be prepared to reset when needed to login with basic account. 

0 Kudos