Chrome OS doesn't support Google accounts that use federated login? |
|||||
Issue descriptionI just met a user who has a Google account but is unable to sign into a Chromebook with that account. When he goes to Google.com he signs in with: bjduarte@asu.edu - you can try it yourself, it redirects to a separate site (https://weblogin.asu.edu/cas/login) to complete the sign in process. He's unable to use the same account to sign into a Chromebook, it just gives an error. Is there a plan to support this eventually, and is there a suggested workaround in the meantime? To reproduce, try to sign in with the username: bjduarte@asu.edu
,
Apr 21 2016
,
Apr 22 2016
Could it be that the IdP is not configuring SAML correctly?
,
Apr 22 2016
For ChromeOS, I believe the domain must explicitly indicate which users are allowed to use SAML to sign in. I'm not sure what the behavior is if the domain admin leaves values at their default.
,
Apr 25 2016
Since the SAML IdP redirection will default to false if the domain admin doesn't configure it, then there's nothing we can do from our side. |
|||||
►
Sign in to add a comment |
|||||
Comment 1 by omrilio@chromium.org
, Apr 21 2016Owner: afakhry@chromium.org
Status: Assigned (was: Untriaged)