Hello,
We currently have Ansible setup with SAML login via Microsoft ADFS. This works fine. We are looking to migrate away from ADFS and start using the F5 BIG-IP as the Identity Provider (idP).
With the F5 setup as the idP and Ansible as the Service Provider (SP), when the user is redirected back to Ansible they receive a “RelayState” error message on the login screen. No other message or errors are shown. We have tried setting the F5 Ansible SP connector “Relay State” value to the same value referenced in Ansible Tower SAML configuration below, with no luck.
Has anyone seen this “RelayState” error?
Thank you!
Harry
https://docs.ansible.com/ansible-tower/latest/html/administration/ent_auth.html
- Set the RelayState on the IdP to the key of the IdP definition in the SAML Enabled Identity Providers field as previously described. In the example given above, RelayState would need to be either myidp or onelogin.