QuestionQ14

Accepting 3rd Party Identity in Salesforce

Universal Containers (UC) has configured an SP-initiated SAML flow between an external IdP and Salesforce. When a UC user tries to log in to the Salesforce mobile app for the first time, they are prompted for Salesforce credentials rather than being taken to the IdP login page.

What is the most likely cause of this issue?

  • A The "Redirect to Identity Provider” option has NOT been selected in the My Domain configuration.
  • B The "Redirect to Identity Provider" option has NOT been selected on the SAML configuration.
  • C The user has NOT been granted the “Enable Single Sign-on” permission.
  • D The user has NOT configured the Salesforce mobile app to use My Domain for login.
Explanation

The Salesforce mobile app defaults to its standard production login server. For SAML SSO, the user must add and select the organization’s My Domain URL as a custom connection; that My Domain endpoint initiates the SAML request and sends the user to the identity provider. Without configuring the app to use My Domain, the app displays the standard Salesforce credential prompt.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!