Hi Dojo,
I have a system that authenticates through Azure B2C via SAML.
I noticed that the login behavior is different between web and Cube. Why is that?
Web
I need to authenticate with my phone even while I have configured to stay signed in.
Cube
I don't need to authenticate with my phone anymore
Hi Jens,
Ultimately it is up to the IdentityProvider web service (Microsoft Azure in this scenario) to decide which authentication steps are required. We have seen different behavior based on IP address, browser UserAgent, user security level or even after X amount of logins. As long as the browser allows cookies, javascript is enabled and is not in incognito/private mode (i.e. be as compliant as possible), there is probably not much you can do about this behavior.
Just leaving this feature suggestion as a comment: led to think that if the SSO is in place with the SAML at client layer, I’d expect no log-in is required, regardless of the specific client app (browser/desktop):
https://community.dataminer.services/new-feature-suggestions/saml-single-sign-on-sso-to-dataminer-for-users-already-authenticated-in-azuread-via-the-os/