Azure AD Application SSO works, but timeout gives AADSTS750054 - SAMLRequest or SAMLResponse error

Dan Bhatoa 46 Reputation points
2022-12-08T13:45:41.763+00:00

Hi,
We have an Azure AD application that we've configured for Single Sign-On. SSO works fine on a corporate device using corporate credentials. On a personal device we're prompted for corporate credentials before we can login. So far, so good.

The issue occurs when we use a personal device and the browser times out. When it times out, the error below is presented

AADSTS750054 - SAMLRequest or SAMLResponse must be present as query string parameters in HTTP request for SAML Redirect binding

How can I get the timeout to simply show the login page again, as opposed to this horrible error? Is there anything we can do from the AAD saml config page with the URLs?

Thanks
268635-saml.jpg

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Dan Bhatoa 46 Reputation points
    2022-12-14T21:59:28.19+00:00

    In this instance we're integrating SSO with Citrix NetScalers. The solution was to add

    a sing-on URL <app url>
    a log our <app url>/cgi/logout

    That redirects the logout back to Citrix successfully for logout

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.