From a647917074843f8d5e1ea54358555b221624d6fd Mon Sep 17 00:00:00 2001 From: Jens Langhammer Date: Tue, 16 Feb 2021 21:35:19 +0100 Subject: [PATCH] providers/saml: use redirect binding first --- authentik/providers/saml/processors/metadata.py | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/authentik/providers/saml/processors/metadata.py b/authentik/providers/saml/processors/metadata.py index ef0996471..218dad17e 100644 --- a/authentik/providers/saml/processors/metadata.py +++ b/authentik/providers/saml/processors/metadata.py @@ -65,18 +65,18 @@ class MetadataProcessor: def get_bindings(self) -> Iterator[Element]: """Get all Bindings supported""" binding_url_map = { - SAML_BINDING_POST: self.http_request.build_absolute_uri( - reverse( - "authentik_providers_saml:sso-post", - kwargs={"application_slug": self.provider.application.slug}, - ) - ), SAML_BINDING_REDIRECT: self.http_request.build_absolute_uri( reverse( "authentik_providers_saml:sso-redirect", kwargs={"application_slug": self.provider.application.slug}, ) ), + SAML_BINDING_POST: self.http_request.build_absolute_uri( + reverse( + "authentik_providers_saml:sso-post", + kwargs={"application_slug": self.provider.application.slug}, + ) + ), } for binding, url in binding_url_map.items(): element = Element(f"{{{NS_SAML_METADATA}}}SingleSignOnService")