Forum Discussion
Daniel_W_
Feb 02, 2016Cirrus
I had the same issue. Found out that you need to attach the SAML ressources on the VPN access profile. When your users hit the SSO vs, APM discovers the already authenticated sessions and checks if there is a SAML SSO ressource attached to this user. When there is not SAML ressource allowed, APM sends a TCP RST as it would do on your SAML IDP VS, when you don't apply the SAML ressource to the user.