Views:

Add an Identity Provider (IdP) before you configure SAML single sign-on to access the Trend Vision One console. You can create multiple IdPs if needed.

Procedure

  1. On the Trend Vision One console, go to AdministrationIdentity Providers.
  2. Click Download the metadata XML.
    The Trend Vision One Service Provider metadata XML file downloads to your computer.
  3. Configure your IdP and download the IdP metadata XML file.
    For more information, see the topic below for your IdP.
  4. On the Trend Vision One console, go back to AdministrationIdentity Providers.
  5. Click Add Identity Provider.
  6. Specify a name and description for the IdP.
  7. To support IdP-Only SAML Group Account, select the checkbox, and then specify the attribute names provided by the identity provider in a SAML assertion to identify groups, users, and user display names.
    Adding IdP-Only SAML Group Accounts does not require user and group synchronization from your identity provider. Trend Vision One accepts assertions from the identity provider and use them to authenticate a user into the Trend Vision One console.
    You can add or get the attribute information in your identity provider system, for example, Microsoft Entra ID, Okta.
    The User attribute and User display name attribute are optional. If not specified, the default value is NameID from the SAML assertion.
  8. Upload the metadata XML file that you downloaded from your IdP.
  9. Click Save.
  10. Click Close to return to the Identity Providers screen, or click Add SAML Users to add SAML-related user accounts in the User Accounts screen.
    For more information, see Configuring accounts.