Has anyone ever implemented WorkSpace One and used vIDM as a third-party iDP with F5 BIG-IP APM? I'm asking because we currently have SalesForce in place and it's already setup to work with SAML through our F5 BIG-IP APM.
It's being used on our corporate workstations and therefor we do not want to change the existing SAML iDP configured in SalesForce but would want to use WorkSpace One on our mobiles devices to perform SSO.
Can we somehow configure vIDM to chain the request to F5 or is there Has anyone ever implement WorkSpace One and used vIDM as a third-party iDP with F5 BIG-IP APM?
I'm asking because we currently have SalesForce in place and it's already setup to work with SAML through our F5 BIG-IP APM. It's being used on our corporate workstation and therefor we do not want to change the existing SAML iDP configured in SalesForce but would want to use WorkSpace One on our mobiles devices to perform SSO.
Can we somehow configure vIDM to chain the request to F5 or is there another way of doing it? way of doing it?
Hello,
Please see the link below:
https://blogs.vmware.com/euc/2016/10/single-sign-on-sso-legacy-apps-workspace-one-f5.html
Ours isn't a legacy header-based application. It's an application where SAML is already federated and configured.
Perhaps this document will help: EUC CST Tech Notes - Setting up a 3rd Party IdP in VMware Identity Manager
You'll need mutual trust to allow assertions from the existing provider and vIDM. In this way, your existing SAML integration will remain, while vIDM can handle mobile SSO.