Is this for on prem or mvision epo? I believe on-prem will only take/need the users email ID.
Was my reply helpful?
If this information was helpful in any way or answered your question, will you please select Accept as Solution in my reply and together we can help other members?
It's a on prem epo installation.
Why there is no documentation about needed settings?
Have you looked at the product guide?
https://docs.trellix.com/bundle/trellix-epolicy-orchestrator-on-prem-5.10.0-product-guide/page/GUID-...
Was my reply helpful?
If this information was helpful in any way or answered your question, will you please select Accept as Solution in my reply and together we can help other members?
Yes, I read the guide, but there is no information about needed rules or other settings needed for AD FS
Some of those have to come from your IDP - doc shows this...
For instructions on how to configure your IdP application, see your identity provider's documentation.
In the meantime, I am checking with one of my colleagues who is more familiar with this.
Was my reply helpful?
If this information was helpful in any way or answered your question, will you please select Accept as Solution in my reply and together we can help other members?
But the IdP has no idea which answer expects epo.
Is it e-mail address, or SAM-Account-Name or something else?
For other systems using SAML we have always this information.
I already explained that for AD it expects the email address. I agree, we need some better instructions and I am working on getting that with someone with expertise in it.
Was my reply helpful?
If this information was helpful in any way or answered your question, will you please select Accept as Solution in my reply and together we can help other members?
New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.
Thousands of customers use our Community for peer-to-peer and expert product support. Enjoy these benefits with a free membership: