The problem with IDP initiated SSO

federator wpadmin at identiainc.com
Tue Dec 23 16:32:03 EST 2014


On 12/23/14 1:54 PM, Cantor, Scott wrote:
>> We are all sinful in front of God :).  Anyhow, I see this is just an
>> implementation issue.
> It's not. It's unimplementable.
Apparently deep linking only works using IdP initiated SSO in Ping's 
implementation 
(http://documentation.pingidentity.com/display/SFC/SP-Initiated+SSO+via+Deep+Linking). 
We can argue how clumsy it is, but it's possible.  To many legacy 
enterprise applications, IdP initiated SSO may be the only SSO option, 
not just to Salesforce.

Nick


More information about the users mailing list