Andrew Wood
Articles
-
Oauth / OpenID Flows: Hybrid
Version Affected: IdP - All versions Description: The Hybrid flow allows an application to request an Authorization Code, Access Token and/or ID Token directly from the Authorization endpoint so c...
-
Oauth / OpenID Flows: Implicit
Version Affected: IdP - All versions Description: The Implicit flow allows an application to request an Access Token directly from the Authorization endpoint so can be fully handled via the Users ...
-
Unable to enrol Privileged Accounts for Time based passcodes and Push Notifications
Version Affected: IdP - All versions Description: A small group of Users report they are unable to enroll for Time based passcodes and Push Notifications. Warning log says Exception: LDAPProfileP...
-
Page not displaying correct - Content Type Restriction issue
Version Affected: IdP - All version Description: When viewing a Realm, the page doesn't display correctly. An extreme example is included below Cause: Content Type Restrictions have been put ...
-
JSON Fingerprint causes low score
Version Affected: IdP - All version Description: When using JSON format to store Digital Fingerprint instead of the standard binary option, Users are often prompted to re-MFA even though the Fin...
-
Group Restriction not working as expected
Version Affected: IdP - All version Description: After setting The Group Restriction option on the Data Tab, the restriction does not work as expected. Cause: Group Name has been entered as ...
-
OpenID error: Blocked by CORS policy: No 'Access-Control-Allow-Origin' header is present on the requested resource.
SecureAuth Idp Version affected: AllDescription: When trying to set up an OIDC based Service Provider, the follow error is seen Access to XMLHttpRequest at 'https://sauth.example.com/SecureAuth4/Se...
-
How to reset forgotten SAAG user Password
SecureAuth Idp Version affected: SAAG Description: In SAAG there are several user accounts. If you forget the SAAG password you can use the Expert account to reset it Cause: Forgotten Password Reso...
-
Enable remote Event Log access for Agentless monitoring
SecureAuth Idp Version affected: 9.0.2 onwardsDescription: Since 9.0.2, the OVA that new customers are sent contains a locked down environment which prevents remote access to the Event Log. We reco...
-
ADFS VAM Error PIN does not match OTP
SecureAuth Idp Version affected: AllDescription: When using the ADFS VAM, if using SMS or Voice the User does receive the OTP but the authentication is not successful. The VAM logs shows "PIN does...