Autodesk SSO - Successful Implementation with Issues on Device ID Recognition and Conditional Access
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report
Hi,
I've successfully implemented a Single Sign-On (SSO) mechanism in our organization and it functions as expected in its basic variant. Our company places great emphasis on data protection, thus we have limited our users to only use Microsoft accounts within the organization's devices. In our case for Windows devices, these are hybrid joined to Azure Active Directory (AAD). To achieve this, we've configured an appropriate Conditional Access policy.
However, during the login to Autodesk from within the application, the Device ID is not passed, which, I suspect, doesn't allow users to log into their Autodesk accounts, as the device type isn't detected during login. Log fragment from an unsuccessful Autodesk account login initiated from Inventor:
1.The same problem also occurs in Chrome when logging into other applications, but installing a specific plugin resolves it:
The mentioned plugin: Windows Accounts Plugin for chrome
2.Similarly, this issue is also seen in Firefox, but Mozilla has implemented a solution as well:
Mentioned solution: Enable SSO login from Firefox
3.In Microsoft Edge, everything works natively without any issues.
The same problem occurs when logging in from Autodesk applications like Inventor or Vault. Do you plan to address this issue in the same manner as Google and Mozilla Foundation?
I hope I have appropriately explained the problem. If you have any questions or need more information, I'm happy to provide more details. As it stands now, due to the conditional access restrictions, we can only log in through browsers configured as above.
Additionaly, please take a look at sign-in logs from sucessfull login from browser (with implemneted solution for Chrome and Edge):
Looking forward to your insights and suggestions.
Best Regards,
Jaromir