Netskope Security Cloud - SAML Relying Party Configuration - RSA Ready Implementation Guide
Configure RSA Cloud Authentication Service
Perform these steps to configure RSA Cloud Authentication Service as Relying Party to Netskope Security Cloud.Procedure
- Sign in to RSA Cloud Administration Console.
- Click Authentication Clients > Relying Parties.
- On the Relying Party Catalog page, click Add a Relying Party and click Add for Service Provider SAML.
- On the Basic Information page, enter the name for the application in the Name field and click Next Step.
- On the Authentication page, choose SecurID manages all authentication.
- Select a Primary Authentication Method and Access Policy as required and click Next Step.
- For providing Service Provider details:
- Select Import Metadata and click Choose File.
- Select the file that is downloaded from the Service Provider.
Refer to the Configure Netskope Security Cloud section to obtain the metadata file.
- Review the ACS URL and Service Provider Entity ID values that are auto-filled.
- In the SAML Response Protection section, choose IdP signs entire SAML response.
- Download the certificate by clicking Download Certificate.
- Click Show Advanced Configuration.
- Under the User Identity section, configure Identifier Type and Property. For example, Identifier Type: emailAddress and Property: mail.
- Click Save and Finish.
- On the My Relying Parties page, click the Edit drop-down icon and select the Metadata option to download the metadata.
- Click Publish Changes. Your application is now enabled for SSO.
Configure Netskope Security Cloud
Perform these steps to configure Netskope Security Cloud.Procedure
- Log on to Netskope Security Cloud with administrator credentials.
- Click Settings.
- On the Settings page, select Administration.
- Click SSO.
- Click DOWNLOAD NETSKOPE METADATA.
- Click EDIT SETTINGS under the SSO/SLO Settings section.
- On the Settings window, provide the following details and click SUBMIT.
- Select the Enable SSO checkbox.
- IDP URL - The SingleSignOnService value that can be obtained from RSA.
- IDP ENTITY ID - The Entity ID value that can be obtained from the metadata file downloaded from RSA.
- IDP CERTIFICATE – Copy and paste the certificate downloaded from RSA.
- IDP SLO URL - The SingleLogoutService value that can be obtained from the metadata file downloaded from RSA.
Return to Netskope Security Cloud - RSA Ready Implementation Guide.
Related Articles
RSA FIM error 'The specified role is not defined in Entity' 18Number of Views Recognize - SAML SSO Agent Configuration - SecurID Access Implementation Guide 3Number of Views Recognize - SAML Relying Party Configuration - SecurID Access Implementation Guide 2Number of Views Replicon - SAML SSO Agent Configuration - SecurID Access Implementation Guide 1Number of Views FIM - How to set "fim.session.lifetime" 13Number of Views
Don't see what you're looking for?