Unable to integrate Azure Active Directory as IDP directly on CEM

Unable to integrate Azure Active Directory as IDP directly on CEM

book

Article ID: CTX330837

calendar_today

Updated On:

Description

While performing AAD integration in CEM console, it shows error stating 'Your IDP settings could not be saved. The connection failed. Please review the information you entered.'

Error message IDP.jpg

We do not see any errors in the CEM logs for above issue. 

Resolution

We should first configure AAD integration on Citrix Cloud first and then add Citrix Identity provider as IDP type on CEM which would fetch required configuration. 

Reference links:
https://docs.citrix.com/en-us/citrix-endpoint-management/authentication/authentication-with-azure-active-directory-through-citrix-cloud.html#configure-citrix-identity-as-the-idp-type-for-endpoint-management

https://docs.citrix.com/en-us/citrix-endpoint-management/prepare-to-enroll-devices-and-deliver-resources.html#integrate-with-azure-ad-conditional-access

Problem Cause

We should not configure AAD as IDP directly on CEM console and this is considered as legacy AAD integration and not supported anymore.