How AEM local user works if AEM using saml 2.0 authentication handler | Community
Skip to main content
Level 2
October 16, 2015
Solved

How AEM local user works if AEM using saml 2.0 authentication handler

  • October 16, 2015
  • 4 replies
  • 1946 views

if my AEM platform using saml 2.0 authentication handler to integrated with LDAP successfully, the identity user will be authenticated by LDAP if they want to access the AEM. But how about the local user like admin account works? admin user is the AEM local user, not belong to LDAP, will admin can access the AEM also?

This post is no longer active and is closed to new replies. Need help? Start a new post to ask your question.
Best answer by Sham_HC

The local user account will work. You can have more than one authentication handler configured and right one is picked based on configured identify requests to which the AuthenticationHandler service is applicable.    General mistake in configuration,  Example you might have configured root "/" for saml & hence idp fails to authenticate admin.   Use [2] to use local accounts.   More details about authentication handler at [1].

[1]   http://sling.apache.org/documentation/the-sling-engine/authentication/authentication-authenticationhandler.html

[2]   http://localhost:4502/libs/granite/core/content/login.html

4 replies

Sham_HC
Sham_HCAccepted solution
Level 10
October 16, 2015

The local user account will work. You can have more than one authentication handler configured and right one is picked based on configured identify requests to which the AuthenticationHandler service is applicable.    General mistake in configuration,  Example you might have configured root "/" for saml & hence idp fails to authenticate admin.   Use [2] to use local accounts.   More details about authentication handler at [1].

[1]   http://sling.apache.org/documentation/the-sling-engine/authentication/authentication-authenticationhandler.html

[2]   http://localhost:4502/libs/granite/core/content/login.html

Level 2
October 16, 2015

Thank you for your response and detail answer. I appreciate it.smiley

smacdonald2008
Level 10
October 16, 2015
Level 2
October 16, 2015

Hi Donald,

Thank you for your reply, I know this post URL teaches people how to set up SAML, IDP, LDAP for AEM integration. But my question is AEM Local user like admin/author account can still have access to AEM platform if AEM platform integrated with Identity Directory already, all the account credential are stored in Identity Directory for saml authentication. Does AEM local authentication still work?