Unable to login using Microsoft Entra ID users via Workspace ONE Access JIT directory
search cancel

Unable to login using Microsoft Entra ID users via Workspace ONE Access JIT directory

book

Article ID: 397399

calendar_today

Updated On:

Products

VMware Aria Suite

Issue/Introduction

  • You have configured an Authentication source in VMware Identity Manager (vIDM) connected to your Microsoft Azure EnterID [sic] but the Just In Time (JIT) users cannot log in.
  • You have worked with your Azure team to configure SAML Authentication so that you can provision Azure Active Directory AD ID's to Log Insight, but you are having issues logging in.
  • You receive error: “Not supported user type. Incomplete domain information received.”
  • You receive error: “Access denied. Unable to authenticate the user.”

Environment

VMware Aria Operations for Logs 8.x
VMware Identity Manager 3.3.7

Cause

There is no vIDM policy configured to allow accessing content from Web Browser that uses the Microsoft Entra ID authentication source as the primary or fallback authentication method.

Resolution

Use step 18 from VMware Identity Manager(vIDM 3.3.x) on Azure Active Directory With JIT Provisioning to enable the use of Microsoft Entra ID for accessing content from the Web Browser. 

Verify that you are using a separate web browser, incognito window, or have cleared the browser cookies when logging in to Aria Operations for Logs.