IBM Security Verify

 View Only

SSO requests from iOS devices do not finish correctly with Google Federation

  • 1.  SSO requests from iOS devices do not finish correctly with Google Federation

    Posted Mon April 17, 2023 07:11 PM

    Hello team,

    I recently upgraded to ISAM version 9.0.7.1 to 10.0.1.0.0 IF 1 however I encountered the following:

    We have SSO configured with a google federation, in which if users access from their gmail app on their device, the flow is as follows:

    1. Access the gmail app (iOS or Android) 2.
    2. Add an account 
    3. Upon entering the email, it redirects to a portal configured in ISVA.
    4. Enter your credentials in the ISVA portal.
    5. Redirects back to the application, adding your account in the gmail app.

    This is desired flow and in version 9.0.7.1 it worked for iOS and Android, however, when we upgraded to version 10.0.1.0.0 IF 1 it stopped working for iOS, the behavior I found was as follows:
    1. Accessing the gmail iOS application. 
    2. Add an account 
    3. When entering the email, it redirects to a portal configured in ISVA.
    4. Enter your credentials in the ISVA portal.
    5. It does not redirect to the application, it logs into the pop-up browser that displays the application, I add an image of this behavior.


    Create a ticket TS012737576, but I am told that the flow performed by ISVA is the same for both Android and iOS, and that technically it is an iOS issue.

    I don't know if this is ISVA update issue or in the gmail app something has changed.


    Thanks in advance



    ------------------------------
    Daniel López
    ------------------------------