Azure SSO SAML error loop after logging-in | Community
Skip to main content
August 18, 2023

Azure SSO SAML error loop after logging-in

  • August 18, 2023
  • 1 reply
  • 1041 views

Hello, I'm trying to connect AEM to Azure SSO and encountered refresh loop after logging in. I checked the error.log and having this error message

"18.08.2023 09:27:00.419 *INFO* [qtp535352936-30933] org.apache.sling.auth.core.impl.SlingAuthenticator getAnonymousResolver: Anonymous access not allowed by configuration - requesting credentials
18.08.2023 09:27:00.424 *WARN* [qtp535352936-30933] org.apache.sling.auth.core.AuthUtil isRedirectValid: Redirect target must not be empty or null"

 

Any idea for this error?

Thank you!

This post is no longer active and is closed to new replies. Need help? Start a new post to ask your question.

1 reply

sherinregi-1
Community Advisor
Community Advisor
August 18, 2023

hi @aemstarternewbie 

Did you get a chance to look at a similar post, there also the same messages are seen and also one way to resolve is given 

 

Refer: https://experienceleaguecommunities.adobe.com/t5/adobe-experience-manager/com-adobe-granite-auth-saml-samlauthenticationhandler-saml-error/td-p/325015

 

Yes I was able to solve it with CORS and Referrer filter configurations as below. You also need to enable ssl on aem instance.


Apache Sling Referrer Filter:

Enable referrer filter to allow B2C tenant URL

{
"allow.hosts":[
"https://login.microsoftonline.com:443"
]
}

CORS Policy:

Enable the CORS policy to allow Cross-Origin POST Request from B2C tenants.

{
"alloworigin":[
"https://login.microsoftonline.com"
]
}

 

August 18, 2023

thanks for the reply

how to enable ssl on aem instance ? 

sherinregi-1
Community Advisor
Community Advisor
August 18, 2023

hi @aemstarternewbie 

Please use the below url to get started with the same 

https://experienceleague.adobe.com/docs/experience-manager-learn/foundation/security/use-the-ssl-wizard.html?lang=en

 

Are you trying to test the azure integration with any of you integration environments. Mostly in case of integration environments SSL will be enabled with the help of valid certificates.