Create a SAML authentication method element
Create a SAML authentication method element to define all configurations to perform SAML-based authentication.
Before you begin
- A SAML Identity provider is configured. Please contact your SAML IdP support team for details.
- The identity provider metadata URL or details are available.
Steps
-
Select
User Authentication.
- Right-click Authentication Method and select New Authentication Method.
- Enter a unique name for the authentication method element in the Name field.
-
From the Type drop-down list, select SAML.
Note: The fields below the Type drop-down list change as per the options selected from the Type drop-down list.
-
Configure the Identity Provider Metadata to establish trusted and secure communication with the IdP:
- Click the Configure button.
- From the Import from dropdown list, select one of the following options:Note: The fields below the Import from drop-down list change as per the options selected from the Type drop-down list
- URL
- IdP Metadata
- If the URL option is selected:
- In the URL field, enter the URL from where the IdP metadata details can be fetched.
- Click the Check Connectivity button to check if the URL works.
- Click the OK button.
- If the IdP Metadata option is selected, do one of the following:
- Click the Import button:
- Click the Browse button.
- Navigate to the location where the metadata file is stored.
- Select the file and then click the Open button.Note: Only the xml file format is supported.
- Click the OK button.
- In the text field:
- Paste the IdP metadata details.
- Click the OK button.
- Click the Import button:
-
Enter group attribute names to look for in SAML response:
- Click Add to add a group attribute name to the list.
- Click Remove to remove the selected group attribute name from the list.
- Select the TLS profile to use to sign in SAML requests, and decrypt SAML responses. Click the Select button to select the element.
- Optionally, add a comment in the Comment field for your future reference.
- Click OK to save the changes.