Unable to configure SAML with Azure AD

Hello pablo,
why do you say that " server.xsrf.allowlist are incorrect " ? yes, looking at the saml configuration instructions it says that it should start with " /_opendistro/ "

but the troubleshooting guide as well the bug below:

the endpoint changed from /_opendistro/ to /_plugins/ therefore it seems to be a miss in the documentation… i can add them both of course, but i need to know which one is the correct one as i need to configure that on the azure side as well

the exchange_key right now is a 64chars long string

i will try a different roles_key as you suggest the one i use is based on the following two links

thanks for your feedback, i’ll go try

BTW, i’m running version 2.4.0, you?