SSO in AEM - Custom SAML Authentication handler in AEM
Requirement:
When AEM page request redirected to OKTA for authentication , When user got authenticated from Okta and user got created in AEM , at the same time, we Need to make third party API call and get the groups list and then assign the user to those groups in AEM.
It looks like only option is Custom SAML Authentication handler. (Not just Authentication handler).
It seems adobe is not exposing com.adobe.granite.auth.saml and we need to create entire module.
We are combining CUG ( closed user group with CUG) with OKTA SAML sso . If we try Authentication Info Post Processor, user is assigned to groups. But, sling authenticator called first. For first request we are getting 404 and when we refresh the page, second time it is working ( Since Sling authenticator gets called before Post processor )
Any suggestions/information on this?