Solved! Go to Solution.
As of yesterday we were told according to ESRI tech support as reported in this bug, NIM097491 and tests we have been running ADFS on does not work on the Collector app. Can you help to Clarify?
Thankx
Frank
ADFS Enterprise logins will work in the released version of Collector 10.2.5. I will update the NIM and close it out.
Thanks
Russ
OK, I have sent a note to the tech however our tests indicate a successful login using our Corp AD account on AGOL via browser, IE and Firefox, and “no” successful login on Collector 10.2.5 using same account. We are presented with the option to use the account in Collector but never given a form based window to put any credentials. The app just spins and eventually returns to the Collector splash page. Are we missing some expected behavior?
Thankx
Frank
Are you using iOS or Android? Are you able to sign in using the browser on the device?
Thanks
Russ
Ok, well after some review of the ADFS configuration on our network and your posting that the "bug" should be closed as well as successful ADFS logins we have determined that our ADFS is not exposed externally. We are now reviewing this and hoping to apply the required changes. I will followup with our final verdict but anticipate the logins to work once the ADFS is open externally. I am glad I reached out to you since the ESRI tech closed the case pretty much immediately due to the NIM Error still being open.
We have corrected our ADFS configuration and can now access our services without issues inside Collector. Since we are using a reverse proxy on our network this required additional IIS permissions to be set correctly allowing internal and external access to the AD stores. Again thanks for following up since ESRI Tech support had incorrect information on the bug.
Thanks for updating this thread.
Cheers
Russ
Frank,
Thanks for posting this, it's given me hope that this may be our Enterprise login configuration may not be 'fully exposed' (via Shibboleth) and this may also be our issues with Enterprise Log-in's and ArcGIS Collector.
I've not found much discussion on this issue but if you have any additional leads regarding the
configuration of Enterprise Log-in's to function within ArcGIS Collector (particularly when using Shibboleth) then I will be sure to pass that info along to our Security team.
thanks much
brian