cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
266
Views
0
Helpful
1
Replies

ASA and SSO with Azure issue

carl.townshend
Level 1
Level 1

Hi All

I have configured Duo SSO with my Cisco ASA with Azure as the Idp.

We get past the Dup prompt and it accepts the passcode, but it then goes back to a Cisco ASA webpage prompting for the username and password and just says login invalid.

Any ideas why this is happening?

In the Azure portal side, it does show the authentication for the user as a success.

cheers

1 Reply 1

DuoKristina
Cisco Employee
Cisco Employee

It sounds like the SAML response from Duo being sent back to your ASA isn't correct. A common reason for this is a typo or incomplete paste of any of the Duo URLs when setting up the SAML identity provider on the ASA. It's a good idea to verify all the information entered into both the ASA and the Duo application in the Admin Panel is correct.

Have you checked the AAA debug logging for SAML on your ASA for more details?

Duo, not DUO.
Quick Links