Keeper Security - SAML My Page SSO Configuration - RSA Ready Implementation Guide
2 years ago
This article describes how to integrate Keeper Security with RSA Cloud Authentication Service using My Page SSO.

Configure RSA Cloud Authentication Service

Perform these steps to configure RSA Cloud Authentication Service using My Page SSO.

Procedure 

  1. Enable My Page SSO by accessing the RSA Cloud Admin Console > Access  > My Page > Single Sign-On (SSO). Ensure it is enabled and protected using two-factor authentication - Password and Access Policy.

    image.png

  1.  On the Applications > Application Catalog page, click Create From Template. image.png
 
 
 
  1. Select SAML Direct.                                                                                                                                                                                                                  image.png  
  2. On the Basic Information page, enter a name for the configuration in the Name field and click Next Step.image.png   
  3. In the Connection Profile section, click the IdP-initiated option.image.png  
  4. For providing Service Provider details select Import Metadata and click Choose File. Select the file which is downloaded from the Service Provider. Refer Configure Keeper Security section to obtain metadata file.image.png  
  5. Review the ACS URL and Service Provider Entity ID values that are auto populated. image.png 
 
 
  1. In the SAML Response Protection section, select IdP signs assertion within response.  
  2. Download the certificate by clicking on Download Certificate.image.png  
  3. Select Show Advanced Configuration, under  the User Identity section select Auto Detect in the Identifier Type and Property from the options in the drop down list.                                                                                                                                                                        image.png
  4. Under the Statement Attributes section add the following Attribute.image.png
  5. Click Next Step.
 
 
  1. Choose your desired Access Policy for this application and click Next Step > Save and Finish.image.png
 
  1. On My Applications page click on the dropdown and select Export Metadata to download the metadata.image.png

  1. Click Publish Changes. After publishing, your application is now enabled for SSO.image.pngimage.png

Configure Keeper Security

Perform these steps to configure Keeper Security.
 
  1. Login to Keeper Security admin console.
  2. Click on Admin, under Node section click on Add Node.                                                                                                                                      
  3. Provide a Name and click Add Node.                                                                                                                                                                                 A screenshot of a computer  Description automatically generated       
 
  1. Under the Provisioning section, click Add Method.image.png
  2. Select Single Sign-On with SSO Connect Cloud and click Next.image.png
  3. Provide a Configuration Name and Enterprise Domain - typically this will be your company name, the Enterprise Domain name needs to be unique, and click Save.                                                                                                                                                                                                   image.png

 
 
 
  1. Under the Identity Provider section, click Browse Files and upload the metadata file downloaded from the RSA platform.image.png
 
  1. Go back to the Provisioning page by clicking the arrow.image.png
 
  1. Click View.                                                                                                                                                                                                                        image.png     
 
 
  1. Click on Export Metadata to download the metadata file (this file will be used to configure the RSA platform).image.png


The configuration is complete.
Return to 
Keeper Security - RSA Ready Implementation Guide