Bug ID 1591209: Unable to force re-authentication on IDP when BIG-IP Next is acting as SAML SP

Last Modified: Oct 19, 2025

Affected Product(s):
BIG_IP_NEXT(VE/HW) APM(all modules)

Known Affected Versions:
20.2.1

Opened: Jun 03, 2024

Severity: 2-Critical

Symptoms

When BIG-IP Next is configured as a SAML SP with force authentication enabled in the SAML Auth item, IDP still does not re-authenticate the user when trying to access the SP.

Impact

User in not re-authenticated while trying to access the SP, even though the admin configured the SP to force re-authentication.

Conditions

Issue is observed for all usecases where force authentication is enabled in SAML Auth item.

Workaround

None

Fix Information

None

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips