Hi,
my goal is to manage Jamf users in Google Workspace and not have to set up users in Jamf Cloud. For that, I have set up SAML SSO and the Google Secure LDAP Integration. Both separately work fine.
- Searching and matching users to groups via LDAP in the Cloud Identity Provider Mapping Test page works.
- Signing in via SSO also succeeds as long as a user is present in Jamf with a matching email address.
The SSO login stops working with "Access Denied" when removing the user in Jamf and only having an LDAP group in Jamf.
Has anybody done a similar setup? Any help would be greatly appreciated!
Thanks,
Christian
https://docs.jamf.com/10.42.0/jamf-pro/documentation/Single_Sign-On.html
https://docs.jamf.com/technical-articles/Configuring_Single_Sign-On-with_Google_Workspace.html
https://docs.jamf.com/10.42.0/jamf-pro/documentation/Google_Secure_LDAP_Integration.html