Printer Logic Security - SAML IDR SSO Configuration - RSA Ready Implementation Guide
a year ago
This article describes how to integrate RSA Cloud Authentication Service with Printer Logic Security using a SAML IDR SSO.
   

Configure RSA Cloud Authentication Service

Perform these steps to configure RSA Cloud Authentication Service as IDR SSO SAML IdP to Printer Logic Security.
Procedure
  1. Sign in to RSA Cloud Administration Console.
  2. On the Applications > Application Catalog page, click Create from Template.                                                                                           image.png
  3. Click Select for SAML Direct.                                                                                                                                                                       image.png
  4. On the Basic Information page, enter the name for the application in the Name field and click the Next Step.
  5. In the Basic Information section, choose Identity Router and click Next Step.                                                                                            image.png
  6. In the Initiate SAML Workflow section, choose IdP-initiated
  7. Provide the Service Provider details:
    1. ACS URL: https://gw.app.printercloud10.com/sidpelab/authn/idp/AccountID/saml2/acs
    2. Service Provider Entity ID: This can be obtained from Printer Logic Security -https://gw.app.printercloud10.com/sidpelab/authn/idp/AccountID/saml2/metadata. Refer to the service provider information in step 5 of the Configure Printer Logic Security section.                                                                  
      Refer to the Configure Printer Logic Security section for details to obtain the Account ID.                                                              image.png
  8. Scroll down to the SAML Identity Provider (Issuer) section.                                                                                                                          image.png
    1. Identity Provider URL is automatically generated. 
    2. Identity Provider Entity ID is automatically generated.
    3. Click Generate Cert Bundle, set a common name for your company certificate, and click Generate and Download.
    4. Click Choose File and upload the private key from the generated certificate bundle.
    5. Click Choose File and upload the certificate from the generated certificate bundle. 
  9. Scroll down to the User Identity section and select the following values:
    1. Identifier Type: emailAddress
    2. Property: mail                                                                                                                                                                                     image.png
  10. Under Advanced Configuration, in the Default Relay State field,  add the Default Relay URL obtained from Printer Logic Security (step 5 of Configure Printer Logic Security section).
image.png
  1. On the User Access page, select the access policy that the identity router will use to determine which users can access the application. image.png
  2. Click Next Step.
  3. On the Portal Display page, configure the portal display and other settings.
  4. Click Save and Finish
  5. On the My Applications page click the Edit drop-down icon and select Export Metadata to download the metadata.
  6. Click Publish Changes.                                                                                                                                                                                  image.png       image.png
  

Configure Printer Logic Security

Perform these steps to configure Printer Logic Security.
Procedure
  1. Log on to Printer Logic Security with administrator credentials.
  2. On the home page, click Tools > General > Settings.                                                                                                                                      image.png
  3. Under Identity Provider Settings, select IDP and click Add to configure the IDP.                                                                  image.png
  4. Provide the following IDP settings.
    1. IdP Template: Select Custom.
    2. Authentication Protocol: Choose SAML2.
    3. Provisioning: Select the JIT checkbox.
    4. SSO URL: The Identity Provider URL that is obtained from step 7 of the Configure RSA Cloud Authentication Service section.
    5. Certificate: Import the certificate downloaded from IDP.
    6. Issuer URL: Provide the Issuer URL obtained from the Identity Provider URL field (step 7 of the Configure RSA Cloud Authentication Service section).
    7. Under Admin Group Name, select the Enable for End User Login and Enable for Admin Login checkboxes. Admin login is optional to ensure the admin is not locked out if the configuration is incorrect.                                                                            image.png
  5. The Service Provider Information will be auto populated, which are used for RSA configuration.
  6. Click Apply.                                                                                                                        image.png
  7. Click Save.                                                                                                                                                              image.png

The configuration is complete.
Return to Printer Logic Security - RSA Ready Implementation Guide.