Secure Mobile Access 12.4 Administration Guide

Using Group Affinity checking

If the same Active Directory used by IdP is available on-premise, you can configure it as an authentication server and use it as Group Affinity server under SAML IdP realm. In this case, SMA will use SAML IdP to authenticate users and on-premise Active Directory for group checking. For more details on how to add Group Affinity, see Enabling Group Affinity Checking in a Realm

After enabling Group Affinity for SAML IdP realm, you can add "Mapped Accounts" by "Browse Directory" or "Dynamic Group" options and selecting SAML IdP realm.

Was This Article Helpful?

Help us to improve our support portal

Techdocs Article Helpful form

  • Hidden
  • Hidden

Techdocs Article NOT Helpful form

  • Still can't find what you're looking for? Try our knowledge base or ask our community for more help.
  • Hidden
  • Hidden