Configuring SAML Authentication in Licensing Management Platform requires that
you configure Licensing Management Platform
and Identity Provider (IdP) information on both consoles in order to facilitate
communication between the systems.
NoteYour IdP may use different terminology. For more information consult your
IdP's documentation.
|
Procedure
- In the Licensing Management Platform
console, go to .The SAML Authentication screen appears.
- In the Service Provider Metadata section, copy
or download the following information that you need to provide to your
IdP:
-
Service Provider entity ID: Identifies the Service Provider application
-
Single Sign On URL (ACS): The endpoint URL responsible for receiving and parsing a SAML assertion (also referred to as
Assertion Consumer Service
) -
Certificate: The encryption certificate (verification certificate) in X.509 format
-
- In your IdP, configure Licensing Management Platform as a
SAML application
. Use the information provided in the following table if required by your IdP.SettingValueService Provider entity IDObtained in step 2Single Sign On URL (ACS)Obtained in step 2CertificateObtained in step 2Application usernameEmailAssertion SignatureUnsignedSignature AlgorithmRSA-SHA256Digest AlgorithmSHA256Assertion EncryptionEncryptedAuthentication context classX.509 CertificateAttribute Statements-
Name: FED_ID
-
Name format: Unspecified
-
Value: user.FED_ID

Important
Required in order to associate Licensing Management Platform user names with Identity Provider user accounts. -
- In order to link your IdP user accounts to Licensing Management Platform user
accounts, you must create a custom attribute in your IdP. Use the information
provided in the following table if required by your IdP.SettingValueData typestringDisplay nameFED_IDVariable nameFED_IDAttribute requiredYes

Important
To map a user's Licensing Management Platform account credentials to their IdP user account, you need to specify their Licensing Management Platform account name as the value of the FED_ID attribute in their IdP user account settings. - Obtain the necessary information from your IdP and configure the
Identity Provider (IdP) Settings:
- Beside IdP integration, select Enable.
- Specify the following Identity Provider information:ItemDescriptionIdP display nameUsed to identify the IdP on the Licensing Management Platform console (for example, on the Sign In screen)IdP entity ID / issuerIdentifies the IdP applicationIdP Single Sign On URLThe endpoint dedicated to handle SAML transactionsCertificateThe encryption certificate (signing certificate) in X.509 format
- Click Save.
