Admin configured web application having Connection type: Symantec ZTNA domain.
Internal URL: https://example.test.local
External URL: https://example.<ztna_tenant_name>.luminatesec.com
Web application is configured with SSO with Azure.
When user access web application it redirect user to perform SSO with Azure and post successful SSO redirect user back to web application's internal URL instead of external one.
ZTNA
Web Application (Connection type: Symantec ZTNA Domain)
wsfed login post SSO it was configured to redirect back to internal domain
For affected ZTNA Web application in Advanced Section under Link Translation need to configure rule as follows to redirect user back to external domain post SSO.
Header name: Location
Response Type: HTTP Response
Source: wreply=https%3a%2f%2fexample.test.local%2fexample%2fexample.aspx
Destination: wreply=https%3a%2f%2fexample.<ztna_tenant_name>.luminatesec.com%2fexample%2fexample.aspx