crewjam/saml

Infinity Redirect /idp-login <-> /acs And KCFError

meftunca opened this issue · 1 comments

WhatsApp Image 2022-09-21 at 9 55 51 PM

Logs:

2022-09-22T14:01:01+03:00 {"company":"","level":"info","method":"POST","msg":"","query":"","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:01Z","type":"endpoint","url":"/sephora/saml/acs","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:01+03:00 {"company":"","level":"info","method":"GET","msg":"","query":"email=user@company.com.tr","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:01Z","type":"endpoint","url":"/sephora/idp-login","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:02+03:00 {"company":"","level":"info","method":"POST","msg":"","query":"","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:02Z","type":"endpoint","url":"/sephora/saml/acs","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:02+03:00 {"company":"","level":"info","method":"GET","msg":"","query":"email=user@company.com.tr","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:02Z","type":"endpoint","url":"/sephora/idp-login","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:03+03:00 {"company":"","level":"info","method":"POST","msg":"","query":"","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:03Z","type":"endpoint","url":"/sephora/saml/acs","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:03+03:00 {"company":"","level":"info","method":"GET","msg":"","query":"email=user@company.com.tr","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:03Z","type":"endpoint","url":"/sephora/idp-login","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:04+03:00 {"company":"","level":"info","method":"POST","msg":"","query":"","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:04Z","type":"endpoint","url":"/sephora/saml/acs","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:04+03:00 {"company":"","level":"info","method":"GET","msg":"","query":"email=user@company.com.tr","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:04Z","type":"endpoint","url":"/sephora/idp-login","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:05+03:00 {"company":"","level":"info","method":"POST","msg":"","query":"","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:05Z","type":"endpoint","url":"/sephora/saml/acs","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:05+03:00 {"company":"","level":"info","method":"GET","msg":"","query":"email=user@company.com.tr","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:05Z","type":"endpoint","url":"/sephora/idp-login","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:06+03:00 {"company":"","level":"info","method":"POST","msg":"","query":"","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:06Z","type":"endpoint","url":"/sephora/saml/acs","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:06+03:00 {"company":"","level":"info","method":"GET","msg":"","query":"email=user@company.com.tr","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:06Z","type":"endpoint","url":"/sephora/idp-login","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:07+03:00 {"company":"","level":"info","method":"POST","msg":"","query":"","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:07Z","type":"endpoint","url":"/sephora/saml/acs","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:07+03:00 {"company":"","level":"info","method":"GET","msg":"","query":"email=user@company.com.tr","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:07Z","type":"endpoint","url":"/sephora/idp-login","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:08+03:00 {"company":"","level":"info","method":"POST","msg":"","query":"","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:08Z","type":"endpoint","url":"/sephora/saml/acs","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:08+03:00 {"company":"","level":"info","method":"GET","msg":"","query":"email=user@company.com.tr","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:08Z","type":"endpoint","url":"/sephora/idp-login","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:09+03:00 {"company":"","level":"info","method":"POST","msg":"","query":"","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:09Z","type":"endpoint","url":"/sephora/saml/acs","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}
2022-09-22T14:01:09+03:00 {"company":"","level":"info","method":"GET","msg":"","query":"email=user@company.com.tr","remote-addr":"10.244.1.8:51978","status":302,"time":"2022-09-22T11:01:09Z","type":"endpoint","url":"/sephora/idp-login","user":"","user-agent":"Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148"}

Normal okta users do not have this error. But we get this error for okta users who are in microsoft active directory