# Cannot POST /auth/strategy/callback SAML

**URL:** <https://discourse.nodered.org/t/cannot-post-auth-strategy-callback-saml/87956>\
**Category:** General\
**Tags:** security\
**Created:** [14 May 2024 17:04 UTC](https://discourse.nodered.org/t/cannot-post-auth-strategy-callback-saml/87956 "2024-05-14T17:04:44Z")\
**Posts on this page:** 1\
**Showing post:** 3

<div class="post-metadata">

**Author:** ![malee](https://avatars.discourse-cdn.com/v4/letter/m/ac8455/32.png) [@malee](https://discourse.nodered.org/u/malee)\
**Post date:** [15 May 2024 08:38 UTC](https://discourse.nodered.org/t/cannot-post-auth-strategy-callback-saml/87956/3 "2024-05-15T08:38:03Z")

</div>

No problem, thanks for having time 🙂

This one is [OIDC](https://discourse.nodered.org/t/cannot-post-auth-strategy-callback/68886)

However this [strategy implementation for Azure works](https://discourse.nodered.org/t/azure-ad-authentication-example/40937), due to the use of the parameters

```auto
responseType: "code",
responseMode: "query",

```

I tried those with this strategy, but they were not compatible.

I am using the SAML-P endpoint, apologies if the next code is very much Hello World!

```auto
adminAuth: {
    type: "strategy",
    strategy: {
      name: "saml",
      label: "Sign in with Entra ID",
      icon: "fa-windows",
      strategy: require("passport-saml").Strategy,
      options: {
        issuer: "very-secret-issuer",
        entryPoint: "https://login.microsoftonline.com/top-secret-uid/saml2",
        cert: "almost-definitely-a-secret-cert,
        callbackUrl: "http://localhost:1880/auth/strategy/callback",
        verify: function (accessToken, refreshToken, profile, done) {
          // @todo
          done(null, profile);
        },
        autoLogin: true,
      },
    },
    users: function (user) {
      return Promise.resolve({ username: user, permissions: "*" });
    },
  },

```

Looks like more tinkering...

---

_[View the full topic](https://discourse.nodered.org/t/cannot-post-auth-strategy-callback-saml/87956)._
