Configure Azure AD as a SAML (2.0) identity provider for Trend Vision One to use.
Azure Active Directory (Azure AD) is Microsoft's multi-tenant cloud based directory and identity management service.
To use Azure Active Directory, you must have a valid subscription with an Azure AD edition license (Free, Basic, or Premium) that handles the sign-in process and eventually provides the authentication credentials to the Trend Vision One management console.
The Enterprise applications | All Applications screen appears.
The Browse Azure AD Gallery screen appears.
For example, type XDR.
If you intent to use the private access service and internet access service in the Zero Trust Secure Access app, Trend Micro recommends that you skip step 9. Instead, go to Properties in the left navigation, disable the User assignment required? toggle, and then proceed to step 10.
If you require user assignment, assign each user individually to use the private access service and internet access service.
The Users and groups screen appears.
The Add Assignment screen appears.
A new frame for Users appears on the right side of the screen.
The number of selected users appear under Users and the Assign button is enabled.
The Users and groups screen appears.
The Overview screen appears.
The Single sign-on screen appears.
The SAML-based Sign-on screen appears.
The Upload metadata file window appears.
A browse file window appears.
The browse file window closes.
The Basic SAML Configuration window appears.
The Identifier URL can be obtained from the metadata.xml file downloaded from Trend Vision One.
Open the metadata.xml file in a text editor, and then copy the value of the entityID attribute from the EntityDescriptor element. Use the copied value for the Identifier (Entity ID).
In the following example, the value is https://example.com/ID.
<?xml version="1.0"?> <EntityDescriptor xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema" entityID="https://example.com/ID" xmlns="urn:oasis:names:tc:SAML:2.0:metadata"> ...
The settings are saved.
The Basic SAML Configuration closes and the SAML-based Sign-on window appears.
Import this metadata file to Trend Vision One.