IdentityServer / IdentityServer4

OpenID Connect and OAuth 2.0 Framework for ASP.NET Core
https://identityserver.io
Apache License 2.0
9.23k stars 4.01k forks source link

AAD bypass login screen #5415

Closed greengumby closed 2 years ago

greengumby commented 2 years ago

Question

We are use Azure Active Directory to authenticate via ExternalProviders and this all sits behind an Azure Application proxy. The proxy enforces authentication and currently redirects to the login screen of the website. Once the user clicks on the sign in button it will re-authenticate and allow them into the site.

My question is as they are already authenticated to the proxy can I bypass clicking on the button in the login screen?

Thanks

gterdem commented 2 years ago

As a workaround, you can write javascript to trigger button (external login) click when it is loaded or in a time out.

leastprivilege commented 2 years ago

Important update

This organization is not maintained anymore besides critical security bugfixes (if feasible). This organization will be archived when .NET Core 3.1 end of support is reached (3rd Dec 2022). All new development is happening in the new Duende Software organization.

The new Duende IdentityServer comes with a commercial license but is free for dev/testing/personal projects and companies or individuals making less than 1M USD gross annnual revenue. Please get in touch with us if you have any question.

stale[bot] commented 2 years ago

This issue has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs. Questions are community supported only and the authors/maintainers may or may not have time to reply. If you or your company would like commercial support, please see here for more information.

github-actions[bot] commented 2 years ago

This issue has been automatically locked since there has not been any recent activity after it was closed. Please open a new issue for related bugs.