web
You’re offline. This is a read only version of the page.
close
Skip to main content
Community site session details

Community site session details

Session Id :
Power Pages - Security
Suggested answer

Power Pages SAML 2.0 SP and IdP Initiated Support

(0) ShareShare
ReportReport
Posted on by 2
Hi All,

I would just like to know: Is Power Pages SAML 2.0 only supporting SP-initiated login, or does it also support IdP-initiated flow? I have set up a SAML 2.0 connection for Google Workspace and would like to use IdP-initiated flow for customer login. I have checked the documentation, and the available information does not explicitly state whether Power Pages supports Identity Provider (IdP) initiated login flows. Could you please confirm this for me? And what are the workarounds for it?

Any input would be helpful, and if you have any real-life project experience setting up Google Workspace as an IdP-initiated flow, please share tips and the challenges you have faced. What are the caveats I need to keep in mind while setting this up in Power Pages?


Thanks in advance for your input.
Categories:
I have the same question (0)
  • Suggested answer
    Michael E. Gernaey Profile Picture
    52,441 Super User 2025 Season 2 on at
    Power Pages SAML 2.0 SP and IdP Initiated Support
     
    In the current implementation it does not support IdP-Initiated flows.
     
    You can see here, but Microsoft has phased out B2C in favor of Entra, so you have to sort of back door it through Entra External ID instead.
     
     
    I am not sure the impact of what Google is deprecating on your or if any but it mentions it there too.
     

    If these suggestions help resolve your issue, Please consider Marking the answer as such and also maybe a like.

    Thank you!
    Sincerely, Michael Gernaey
  • MV-12121220-0 Profile Picture
    2 on at
    Power Pages SAML 2.0 SP and IdP Initiated Support
     
    Apologies for the late reply and thank you again for your earlier guidance. I’ve been working based on your suggestion to configure everything through Microsoft Entra External ID instead of B2C.
     
    I wanted to confirm the flow I implemented and understand where I might be going wrong because goal is to get an IDP-initiated SAML flow working.
     
    Current Setup:
    • App Registration in Azure Entra External ID (used only for Power Pages connection).
    • Configured SAML/WS-Fed Identity Provider under Entra External ID
    • Configured Power Pages authentication to use Entra External ID
    • Shared the Entity ID and ACS URL with the customer
    • Customer uses Google Workspace SAML, and has mapped standard claims like
    • http://schemas.xmlsoap.org/ws/2005/05/identity/claims/emailaddress
    What Happens During IDP-Initiated Sign-In:
    When the customer launches the login from their Google Workspace SAML app they get redirected to the Microsoft login page and receive this error:
     
    AADSTS901004: Expected parameter estsrequest not found.
    Request Id: 1a3bec72-0f9a-4707-b0f5-987d84460100
    Timestamp: 2025-11-24T16:11:13Z
     
    I have attached error photo below for better understanding
     
    What I Need Your Guidance On
    Since we want IDP-initiated flow to work I’m trying to understand:
    • Are we missing a required parameter (e.g estsrequest) that Entra External ID expects for IDP-initiated authentication?
    • Or is our Entra External ID configuration incomplete for supporting IDP-initiated flow even though SP-initiated is working?
    • Is there any additional linkage needed between the App Registration and the SAML IdP?
    • Are there known limitations with External ID (we are currently on the free trial) that might block IDP-initiated SAML?
    Any insight into where our flow might be misconfigured would really help I want to make sure I not overlooking a required step for IDP-initiated SAML.
     
    Thanks again for your time and support!

    Thanks,
    Malav

Under review

Thank you for your reply! To ensure a great experience for everyone, your content is awaiting approval by our Community Managers. Please check back later.

Helpful resources

Quick Links

Coming soon: forum hierarchy changes

In our never-ending quest to improve we are simplifying the forum hierarchy…

Chiara Carbone – Community Spotlight

We are honored to recognize Chiara Carbone as our Community Spotlight for November…

Leaderboard > Power Pages

#1
Jerry-IN Profile Picture

Jerry-IN 66

#2
Michael E. Gernaey Profile Picture

Michael E. Gernaey 37 Super User 2025 Season 2

#3
Fubar Profile Picture

Fubar 34 Super User 2025 Season 2

Last 30 days Overall leaderboard

Featured topics