<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How can I implement SAML AD FS 2FA with Qlik Sense without redirecting to IDP? in Integration, Extension &amp; APIs</title>
    <link>https://community.qlik.com/t5/Integration-Extension-APIs/How-can-I-implement-SAML-AD-FS-2FA-with-Qlik-Sense-without/m-p/2481644#M21249</link>
    <description>&lt;P&gt;I have been searching for quite a while now and it seems the only way to add an OTP or authenticator is through SAML for the time being (if there are other methods, I am not aware of them). Qlik support recommended contacting professional services so they might have a way. Our IT guys said they'll put the finishing touches to the solution since it is 90% ready.&lt;/P&gt;
&lt;P&gt;I hope Qlik can add native support for authenticators with Client-Managed installations.&lt;/P&gt;</description>
    <pubDate>Sun, 15 Sep 2024 13:10:00 GMT</pubDate>
    <dc:creator>M_B</dc:creator>
    <dc:date>2024-09-15T13:10:00Z</dc:date>
    <item>
      <title>How can I implement SAML AD FS 2FA with Qlik Sense without redirecting to IDP?</title>
      <link>https://community.qlik.com/t5/Integration-Extension-APIs/How-can-I-implement-SAML-AD-FS-2FA-with-Qlik-Sense-without/m-p/2480365#M21213</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;I have been asked to implement 2FA to our external Qlik Sense link (running May 2024 Patch 4 if it matters). While I have finished this task with the help of the company responsible for the 2FA software, an issue remains where the Qlik Sense link redirects to the 2FA machine. Of course since that machine is not made public, it is impossible to log in. It does work internally.&lt;/P&gt;
&lt;P&gt;I am trying to find out if there is a way to keep the log in dialog box to be provided by the Qlik Sense server, while it communicates in the back-end with the 2FA server. I have not worked with API's before but if I can get some pointers on who to ask or who is to implement this then I can get the ball moving again. Everyone who is involved in this chain (network, security, etc) says it is not from their side.&lt;/P&gt;
&lt;P&gt;Thanks in advance.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 08:34:49 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Integration-Extension-APIs/How-can-I-implement-SAML-AD-FS-2FA-with-Qlik-Sense-without/m-p/2480365#M21213</guid>
      <dc:creator>M_B</dc:creator>
      <dc:date>2024-09-09T08:34:49Z</dc:date>
    </item>
    <item>
      <title>Re: How can I implement SAML AD FS 2FA with Qlik Sense without redirecting to IDP?</title>
      <link>https://community.qlik.com/t5/Integration-Extension-APIs/How-can-I-implement-SAML-AD-FS-2FA-with-Qlik-Sense-without/m-p/2480538#M21220</link>
      <description>&lt;P&gt;Hello ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Have you reviewed any of the documentation for implementing MFA?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1. &lt;A href="https://community.qlik.com/t5/Official-Support-Articles/Is-it-possible-to-set-up-multi-factor-authentication-and-max/ta-p/1712179leme" target="_blank"&gt;https://community.qlik.com/t5/Official-Support-Articles/Is-it-possible-to-set-up-multi-factor-authentication-and-max/ta-p/1712179leme&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;2.&amp;nbsp;&lt;A href="https://community.qlik.com/t5/App-Development/Multi-factor-authentication/td-p/1280545" target="_blank"&gt;https://community.qlik.com/t5/App-Development/Multi-factor-authentication/td-p/1280545&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 19:21:11 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Integration-Extension-APIs/How-can-I-implement-SAML-AD-FS-2FA-with-Qlik-Sense-without/m-p/2480538#M21220</guid>
      <dc:creator>Ray_Strother</dc:creator>
      <dc:date>2024-09-09T19:21:11Z</dc:date>
    </item>
    <item>
      <title>Re: How can I implement SAML AD FS 2FA with Qlik Sense without redirecting to IDP?</title>
      <link>https://community.qlik.com/t5/Integration-Extension-APIs/How-can-I-implement-SAML-AD-FS-2FA-with-Qlik-Sense-without/m-p/2480584#M21221</link>
      <description>&lt;P&gt;Hello &lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/63754"&gt;@Ray_Strother&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;I have used the following links to already set up MFA:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;A href="https://help.qlik.com/en-US/sense-admin/February2024/Subsystems/DeployAdministerQSE/Content/Sense_DeployAdminister/QSEoW/Administer_QSEoW/Managing_QSEoW/SAML-configuration-ADFS.htm" target="_blank" rel="noopener"&gt;SAML configuration with AD FS | Qlik Sense for administrators Help&lt;/A&gt;&amp;nbsp; (for general configuration).&lt;/LI&gt;
&lt;LI&gt;&lt;A href="https://help.qlik.com/en-US/cloud-services/Subsystems/Hub/Content/Sense_Hub/Admin/configuring-idp-adfs.htm" target="_blank" rel="noopener"&gt;https://help.qlik.com/en-US/cloud-services/Subsystems/Hub/Content/Sense_Hub/Admin/configuring-idp-adfs.htm&lt;/A&gt; (for the correct mappings).&lt;/LI&gt;
&lt;LI&gt;&lt;A href="https://community.qlik.com/t5/Official-Support-Articles/Quick-Guide-to-installing-ADFS-for-testing-SAML/ta-p/1710427" target="_blank" rel="noopener"&gt;https://community.qlik.com/t5/Official-Support-Articles/Quick-Guide-to-installing-ADFS-for-testing-SAML/ta-p/1710427&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A href="https://support.qlik.com/articles/000053723" target="_blank" rel="noopener"&gt;https://support.qlik.com/articles/000053723&lt;/A&gt; (to use SAMAccountName instead of UPN to match already imported users through an LDAP connection).&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;The problem is not &lt;STRONG&gt;how &lt;/STRONG&gt;to set up MFA, I already did it through SAML AD FS. The problem I am facing (if you could carefully read the post) is about the behavior of the authentication method.&lt;/P&gt;
&lt;P data-unlink="true"&gt;If I enter &lt;A href="https://qliksense.companysite.com" target="_self"&gt;https://qliksense.companysite.com&lt;/A&gt; in the address bar I am redirected to &lt;A href="https://SAMLMachineName.companysite.com" target="_blank" rel="noopener"&gt;https://SAMLMachineName.companysite.com&lt;/A&gt; . Internally, this works without a problem. &lt;STRONG&gt;Externally&lt;/STRONG&gt;, &amp;lt;------(this here is the issue) it does not work because the SAML server is not made public with a DNS name. I am asking: Is there a way to &lt;STRONG&gt;not&lt;/STRONG&gt; redirect and pass the log in box from and within Qlik Sense to the user. I do not want the login page to change. I want the users to remain at &lt;A href="https://qliksense.companysite.com" target="_self"&gt;https://qliksense.companysite.com&lt;/A&gt; and be served the login request from &lt;A href="https://SAMLMachineName.companysite.com" target="_blank" rel="noopener"&gt;https://SAMLMachineName.companysite.com&lt;/A&gt; through the back-end. If possible. If not, maybe I can switch to OIDC if it can serve this purpose.&lt;/P&gt;</description>
      <pubDate>Tue, 10 Sep 2024 06:16:16 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Integration-Extension-APIs/How-can-I-implement-SAML-AD-FS-2FA-with-Qlik-Sense-without/m-p/2480584#M21221</guid>
      <dc:creator>M_B</dc:creator>
      <dc:date>2024-09-10T06:16:16Z</dc:date>
    </item>
    <item>
      <title>Re: How can I implement SAML AD FS 2FA with Qlik Sense without redirecting to IDP?</title>
      <link>https://community.qlik.com/t5/Integration-Extension-APIs/How-can-I-implement-SAML-AD-FS-2FA-with-Qlik-Sense-without/m-p/2481644#M21249</link>
      <description>&lt;P&gt;I have been searching for quite a while now and it seems the only way to add an OTP or authenticator is through SAML for the time being (if there are other methods, I am not aware of them). Qlik support recommended contacting professional services so they might have a way. Our IT guys said they'll put the finishing touches to the solution since it is 90% ready.&lt;/P&gt;
&lt;P&gt;I hope Qlik can add native support for authenticators with Client-Managed installations.&lt;/P&gt;</description>
      <pubDate>Sun, 15 Sep 2024 13:10:00 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Integration-Extension-APIs/How-can-I-implement-SAML-AD-FS-2FA-with-Qlik-Sense-without/m-p/2481644#M21249</guid>
      <dc:creator>M_B</dc:creator>
      <dc:date>2024-09-15T13:10:00Z</dc:date>
    </item>
  </channel>
</rss>

