home.social

#saml — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #saml, aggregated by home.social.

fetched live
  1. [ Blog ] Configure cross-domain Omnissa Horizon access using Entra ID Guest Accounts

    Using Microsoft Entra ID Guest Accounts (B2B) for Omnissa Horizon authentication provides a clean, elegant solution that eliminates the need to duplicate configurations on your Unified Access Gateways (UAGs).

    This architecture is typically deployed when you need rviv.ly/OEX7BH

  2. [ Blog ] Configure cross-domain Omnissa Horizon access using Entra ID Guest Accounts

    Using Microsoft Entra ID Guest Accounts (B2B) for Omnissa Horizon authentication provides a clean, elegant solution that eliminates the need to duplicate configurations on your Unified Access Gateways (UAGs).

    This architecture is typically deployed when you need rviv.ly/OEX7BH

  3. [ Blog ] Configure cross-domain Omnissa Horizon access using Entra ID Guest Accounts

    Using Microsoft Entra ID Guest Accounts (B2B) for Omnissa Horizon authentication provides a clean, elegant solution that eliminates the need to duplicate configurations on your Unified Access Gateways (UAGs).

    This architecture is typically deployed when you need rviv.ly/OEX7BH

  4. [ Blog ] Configure cross-domain Omnissa Horizon access using Entra ID Guest Accounts

    Using Microsoft Entra ID Guest Accounts (B2B) for Omnissa Horizon authentication provides a clean, elegant solution that eliminates the need to duplicate configurations on your Unified Access Gateways (UAGs).

    This architecture is typically deployed when you need rviv.ly/OEX7BH

  5. I have a question for the security nerds with knowledge in SAML and Microsoft Entra: We happened to notice that the application web server was presenting the certificate for "foo.example.com" instead of the certificate for the actual URL "foo.example.net/login". foo.example.net is CNAME to foo.example.com. Despite this, the login worked just fine the whole time. I’m not sure how serious the issue is, but my gut tells me this probably isn’t such a good idea, right?

    #microsoft #saml #entra #ssl

  6. I have a question for the security nerds with knowledge in SAML and Microsoft Entra: We happened to notice that the application web server was presenting the certificate for "foo.example.com" instead of the certificate for the actual URL "foo.example.net/login". foo.example.net is CNAME to foo.example.com. Despite this, the login worked just fine the whole time. I’m not sure how serious the issue is, but my gut tells me this probably isn’t such a good idea, right?

    #microsoft #saml #entra #ssl

  7. I have a question for the security nerds with knowledge in SAML and Microsoft Entra: We happened to notice that the application web server was presenting the certificate for "foo.example.com" instead of the certificate for the actual URL "foo.example.net/login". foo.example.net is CNAME to foo.example.com. Despite this, the login worked just fine the whole time. I’m not sure how serious the issue is, but my gut tells me this probably isn’t such a good idea, right?

    #microsoft #saml #entra #ssl

  8. I have a question for the security nerds with knowledge in SAML and Microsoft Entra: We happened to notice that the application web server was presenting the certificate for "foo.example.com" instead of the certificate for the actual URL "foo.example.net/login". foo.example.net is CNAME to foo.example.com. Despite this, the login worked just fine the whole time. I’m not sure how serious the issue is, but my gut tells me this probably isn’t such a good idea, right?

    #microsoft #saml #entra #ssl

  9. CERT/CC discloses six Logto vulnerabilities, including CVE-2026-15611 and CVE-2026-15616, that enable SSO authentication bypass and MFA skipping.

    #Logto #SSO #SAML #OIDC #MFABypass #CERTCC

    securityonline.info/logto-vuln

  10. CVE-2026-15013 | CRITICAL vuln in cyberlord92 SAML SSO Login (≤5.4.3): Signature verification flaw enables authentication bypass & admin account takeover. Disable plugin until patched. radar.offseq.com/threat/cve-20 #OffSeq #WordPress #CVE202615013 #SAML #Vuln

  11. CVE-2026-15013 | CRITICAL vuln in cyberlord92 SAML SSO Login (≤5.4.3): Signature verification flaw enables authentication bypass & admin account takeover. Disable plugin until patched. radar.offseq.com/threat/cve-20 #OffSeq #WordPress #CVE202615013 #SAML #Vuln

  12. CVE-2026-15013 | CRITICAL vuln in cyberlord92 SAML SSO Login (≤5.4.3): Signature verification flaw enables authentication bypass & admin account takeover. Disable plugin until patched. radar.offseq.com/threat/cve-20 #OffSeq #WordPress #CVE202615013 #SAML #Vuln

  13. CVE-2026-15013 | CRITICAL vuln in cyberlord92 SAML SSO Login (≤5.4.3): Signature verification flaw enables authentication bypass & admin account takeover. Disable plugin until patched. radar.offseq.com/threat/cve-20 #OffSeq #WordPress #CVE202615013 #SAML #Vuln

  14. Need to generate and sign a SAML AuthnRequest for HTTP-Redirect binding? This snippet uses OpenSSL and xmlstarlet to create the signed XML with AssertionConsumerServiceURL and ForceAuthn.

    #saml #snippet #ValtersIT

    valtersit.com/vault/saml-authn

  15. This week I am getting intense amount #Identity knowledge from my amazing teammates in #SUNET. So many things are becoming clearer!!! #Sweden #SAML #OIDC

  16. This week I am getting intense amount #Identity knowledge from my amazing teammates in #SUNET. So many things are becoming clearer!!! #Sweden #SAML #OIDC

  17. This week I am getting intense amount #Identity knowledge from my amazing teammates in #SUNET. So many things are becoming clearer!!! #Sweden #SAML #OIDC

  18. This week I am getting intense amount #Identity knowledge from my amazing teammates in #SUNET. So many things are becoming clearer!!! #Sweden #SAML #OIDC

  19. This week I am getting intense amount #Identity knowledge from my amazing teammates in #SUNET. So many things are becoming clearer!!! #Sweden #SAML #OIDC

  20. CVE-2026-49454: szTheory relyra (<1.2.0) has a CRITICAL SAML authentication flaw — improper signature verification lets attackers forge responses & impersonate users. Fixed in v1.2.0. Patch now! radar.offseq.com/threat/cve-20 #OffSeq #CVE202649454 #SAML #Elixir #InfoSec

  21. CVE-2026-49454: szTheory relyra (<1.2.0) has a CRITICAL SAML authentication flaw — improper signature verification lets attackers forge responses & impersonate users. Fixed in v1.2.0. Patch now! radar.offseq.com/threat/cve-20 #OffSeq #CVE202649454 #SAML #Elixir #InfoSec

  22. CVE-2026-49454: szTheory relyra (<1.2.0) has a CRITICAL SAML authentication flaw — improper signature verification lets attackers forge responses & impersonate users. Fixed in v1.2.0. Patch now! radar.offseq.com/threat/cve-20 #OffSeq #CVE202649454 #SAML #Elixir #InfoSec

  23. CVE-2026-49454: szTheory relyra (<1.2.0) has a CRITICAL SAML authentication flaw — improper signature verification lets attackers forge responses & impersonate users. Fixed in v1.2.0. Patch now! radar.offseq.com/threat/cve-20 #OffSeq #CVE202649454 #SAML #Elixir #InfoSec

  24. #SAML Single Log Out is finally looking good for #tryton … Still some ironing to do wrt the log in window that should reappear after a log out. And then there's the issue of the GTK client to tackle.

    SAML libraries in python aren't exactly well documented but I think I had some success in untangeling and matching the code of pysaml2 and the the actual SAML2 norm and protocol.

    foss.heptapod.net/tryton/tryto

  25. #SAML Single Log Out is finally looking good for #tryton … Still some ironing to do wrt the log in window that should reappear after a log out. And then there's the issue of the GTK client to tackle.

    SAML libraries in python aren't exactly well documented but I think I had some success in untangeling and matching the code of pysaml2 and the the actual SAML2 norm and protocol.

    foss.heptapod.net/tryton/tryto

  26. #SAML Single Log Out is finally looking good for #tryton … Still some ironing to do wrt the log in window that should reappear after a log out. And then there's the issue of the GTK client to tackle.

    SAML libraries in python aren't exactly well documented but I think I had some success in untangeling and matching the code of pysaml2 and the the actual SAML2 norm and protocol.

    foss.heptapod.net/tryton/tryto

  27. #SAML Single Log Out is finally looking good for #tryton … Still some ironing to do wrt the log in window that should reappear after a log out. And then there's the issue of the GTK client to tackle.

    SAML libraries in python aren't exactly well documented but I think I had some success in untangeling and matching the code of pysaml2 and the the actual SAML2 norm and protocol.

    foss.heptapod.net/tryton/tryto

  28. I wonder how do people test their #saml implementations. Do they run locally an IdP to test for multiple scenarios? Also I don't know how I'm supposed to write tests for that.

    #pleaseboost #testing

  29. I wonder how do people test their #saml implementations. Do they run locally an IdP to test for multiple scenarios? Also I don't know how I'm supposed to write tests for that.

    #pleaseboost #testing

  30. I wonder how do people test their #saml implementations. Do they run locally an IdP to test for multiple scenarios? Also I don't know how I'm supposed to write tests for that.

    #pleaseboost #testing

  31. I wonder how do people test their #saml implementations. Do they run locally an IdP to test for multiple scenarios? Also I don't know how I'm supposed to write tests for that.

    #pleaseboost #testing

  32. #Jellyfin #SSO plugin github.com/9p4/jellyfin-plugin has been archived ("I'm tired of working on this after all the years", which, fair).
    But it looks like it was forked into github.com/eddymoulton/jellyfi and development contiues, limiting itself to #OIDC but without #SAML
    Nice!

    #SelfHost #SelfHosting #HomeLab

  33. #Jellyfin #SSO plugin github.com/9p4/jellyfin-plugin has been archived ("I'm tired of working on this after all the years", which, fair).
    But it looks like it was forked into github.com/eddymoulton/jellyfi and development contiues, limiting itself to #OIDC but without #SAML
    Nice!

    #SelfHost #SelfHosting #HomeLab

  34. #Jellyfin #SSO plugin github.com/9p4/jellyfin-plugin has been archived ("I'm tired of working on this after all the years", which, fair).
    But it looks like it was forked into github.com/eddymoulton/jellyfi and development contiues, limiting itself to #OIDC but without #SAML
    Nice!

    #SelfHost #SelfHosting #HomeLab

  35. #Jellyfin #SSO plugin github.com/9p4/jellyfin-plugin has been archived ("I'm tired of working on this after all the years", which, fair).
    But it looks like it was forked into github.com/eddymoulton/jellyfi and development contiues, limiting itself to #OIDC but without #SAML
    Nice!

    #SelfHost #SelfHosting #HomeLab

  36. #Jellyfin #SSO plugin github.com/9p4/jellyfin-plugin has been archived ("I'm tired of working on this after all the years", which, fair).
    But it looks like it was forked into github.com/eddymoulton/jellyfi and development contiues, limiting itself to #OIDC but without #SAML
    Nice!

    #SelfHost #SelfHosting #HomeLab

  37. 🌟 LemonLDAP::NG 2.23 released!

    ℹ️ Improvements on CAS/SAML/OIDC, on 2FA management, hooks, Crowdsec and configuration

    ➡️ projects.ow2.org/view/lemonlda

    @ow2 @PerlRakuFoundation

  38. For whoever likes to authenticate to their #Nextcloud instance with some overengineered protocols, namely SAML. There is a new release of the user_saml app with some small bugfixes and better debug outputs when something goes wrong.

    Cheers!

    github.com/nextcloud-releases/

    #SAML