[ 
https://issues.apache.org/jira/browse/GUACAMOLE-1266?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17389053#comment-17389053
 ] 

Victor Martinez commented on GUACAMOLE-1266:
--------------------------------------------

We are having a problem with the implementation of SAML for the
authentication to the RDP service. I wanted to know if you could help me or
if there is already a similar case. I enter the Guacamole Portal with the
SAML_ID, but when trying to connect via rdp to a host, I receive access
denied: Jul 28 16:27:10 chidmz117 guacd [17514]: guacd [17905]: INFO: #
011RDP server closed / refused connection: Authentication failure (invalid
credentials?)

Victor J. Martínez
RHCE
Cel.: (595)972-918-550
Asunción - Paraguay



El lun, 26 jul 2021 a las 13:57, Nick Couchman (Jira) (<[email protected]>)



> Implement SAML Single Logout
> ----------------------------
>
>                 Key: GUACAMOLE-1266
>                 URL: https://issues.apache.org/jira/browse/GUACAMOLE-1266
>             Project: Guacamole
>          Issue Type: New Feature
>          Components: guacamole
>            Reporter: Michael Miklis
>            Priority: Minor
>
> The SAML Authentication Extension does not seem to have a logout function 
> built in. This will result in a loop. Steps to reproduce:
>  * connect to guacamole ULR
>  * Automatic redirect to IDP Signin Page happens
>  * login via SAML IDP to Guacamole
>  * Click Logoff in Guacamole
>  * Redirect to Guacamole Start-Page happens
>  * Redirect to IDP Signin Page
>  * User gets signed in automatically as the session on the IDP is still 
> existing
>  
> The correct behaviour must be:
>  * connect to guacamole ULR
>  * Automatic redirect to IDP Signin Page happens
>  * login via SAML IDP to Guacamole
>  * Click Logoff in Guacamole
>  * *Redirecting to configured IDP Logoff URL*
>  * *IDP destroys session and redirects to Guacamole start page*
>  * Redirect to IDP Signin Page
>  * User gets signed in automatically as the session on the IDP is still 
> existing



--
This message was sent by Atlassian Jira
(v8.3.4#803005)

Reply via email to