CloudAMQP - SAML Relying Party Configuration - SecurID Access Implementation Guide
This section describes how to integrate SecurID Access with CloudAMQP using Relying Party. Relying party uses SAML 2.0 to integrate SecurID Access as a SAML Identity Provider (IdP) to CloudAMQP SAML Service Provider (SP).
Architecture Diagram
Configure SecurID Cloud Authentication Service
Perform these steps to configure SecurID Cloud Authentication Service as a relying party SAML IdP to CloudAMQP .
Procedure
-
Sign into the Cloud Administration Console and browse to Authentication Clients > Relying Parties and click Add a Relying Party.
-
On Basic Information page enter a Name for the application, ie. CloudAMQP Then click on Next Step.
-
On Authentication page
-
select the SecurID Access manages all authentication
-
Select the desired Primary Authentication Method from the dropdown list.
-
Select the desired policy from the Access Policy for Additional Authentication.
-
Click Next Step
-
-
On Connection Profile page
-
Enter the Assertion Consumer Service (ACS) From the ACS URL CloudAMQP configuration below. For example: https://customer.cloudamqp.com/login/saml.
-
Enter the Service Provider Entity ID From the SAML Audience URL in theCloudAMQP configuration below. For example: https://customer.cloudamqp.com/saml/metadata/ee8269ae-d46a-473e-ba33-d5f7ed15afe2.
-
In the Message Protection section, check the idP Signs: Entire SAML response.
-
Open Advanced Configuration section.
- For Name ID set Identifier type = EmailAddress and Property = mail
-
Click on Save and Finish
-
-
Browse to Authentication Clients > Relying Parties
-
Scroll down to the your newly created Relying party and click down error next to Edit and choose View or Download IdP MetatData and download the Metadata File.
-
Click on Publish Changes. Your application is now enabled for SSO. If you make any additional changes to the application configuration you will need to republish.
Configure CloudAMQP
Perform these steps to integrate CloudAMQP with SecurID Access as a Relying Party SAML SP.
Procedure
-
Sign into CloudAMQP and browse to Team Settings > SAML.
-
Note the ACS URL and SAML Audience URL these are used above in the SecurID Cloud Authenitcation Service (CAS) configuration above.
-
For the Issuer/Entity ID enter the Issuer Entity ID from the SecurID Cloud Authenitcation Service (CAS) configuration above. For example, 2kshvydovyh.
-
Save changes.
Configuration is complete.
See main page for more certification information.
Related Articles
CloudAMQP - SAML SSO Agent Configuration - RSA Ready SecurID Access Implementation Guide 1Number of Views Configure Browsers to Trust Cloud Access Service 118Number of Views Cloud Administration Local Groups Public API 36Number of Views RCM not generating new Delta CRLs 8Number of Views How to set a new PIN for RSA SecurID Tokens in RSA Authentication Manager 8.6 or later using NTRadPing Utility 149Number of Views
Trending Articles
RSA Authentication Manager 8.8 Setup and Configuration Guide RSA Authentication Manager 8.9 Setup and Configuration Guide IDR SSO - Step 3: Deploy the Identity Router RSA SecurID software token .sdtid file fails to import into RSA SecurID Software Token 5.0 for Windows RSA Identity Governance and Lifecycle RESTful web service response: java.lang.IllegalStateException