You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/active-directory/manage-apps/f5-big-ip-headers-easy-button.md
+12-14Lines changed: 12 additions & 14 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -43,26 +43,24 @@ A BIG-IP in front of the application enables uoverlay of the service with Azure
43
43
44
44
The SHA solution contains:
45
45
46
-
***Application** - BIG-IP published service to be protected by Azure AD SHA.
47
-
***Azure AD** - Security Assertion Markup Language (SAML) Identity Provider (IdP) responsible for verification of user credentials, Conditional Access (CA), and SAMLbased SSO to the BIG-IP. Through SSO, Azure AD provides the BIG-IP with any required session attributes.
48
-
***BIG-IP** - reverseproxy and SAML service provider (SP) to the application, delegating authentication to the SAML IdP before performing header-based SSO to the backend application.
46
+
***Application** - BIG-IP published service protected by Azure AD SHA
47
+
***Azure AD** - Security Assertion Markup Language (SAML) identity provider (IdP) that verifies user credentials, Conditional Access, and SAML-based SSO to the BIG-IP. With SSO, Azure AD provides the BIG-IP with session attributes.
48
+
***BIG-IP** - reverse-proxy and SAML service provider (SP) to the application, delegating authentication to the SAML IdP before performing header-based SSO to the backend application.
49
49
50
-
SHA for this scenariosupports both SP and IdPinitiated flows. The following image illustrates the SPinitiated flow.
50
+
For this scenario, SHA supports SP- and IdP-initiated flows. The following diagram illustrates the SP-initiated flow.
0 commit comments