Forum Discussion

rbmcnicholas's avatar
rbmcnicholas
Icon for Nimbostratus rankNimbostratus
Apr 08, 2019

APM Session Single Domain Not Persisting

Hello,

 

I have an APM Profile/Policy assigned to three Virtual Servers (webtop.example.com, app.example.com, and idp.example.com). webtop.example.com is where users first go to. The policy stores information about the user based on AD queries. The user gets assigned a webtop, with a Webtop Link that points to app.example.com. app.example.com is a SAML SP that sends a SAML AuthN Request to idp.example.com.

 

In the single APM Profile/Policy, I have Domain Mode on Single Domain, with the Domain Cookie set to example.com and Secure for Cookie Options. I have tried either None for SSO Config or the IdP configuration that is configured for idp.example.com.

 

After authenticating to webtop.example.com, I see the .example.com Domain on the MRHSession Cookie. When I click the link to app.example.com, I get sent into the Access Policy again, with MRHSession set to a new value.

 

Am I doing something wrong here? Shouldn't the MRHSession Cookie be passed to both app.example.com and idp.example.com after authenticating to webtop.example.com?

 

Thanks, Ryan

 

1 Reply