Identity and Access Management

Integrate your IAM systems with Zero Trust Secure Access and manage authentication settings, such as single single-on (SSO).

The following table describes the tabs available on the Identity and Access Management screen.

Tab

Description

IAM Management

Leverage Third-Party Integration to grant permissions in your IAM systems to allow Zero Trust Secure Access to monitor user sign-in attempts, access user data, and perform actions on user accounts, such as disabling user accounts and forcing password reset.

For more information, see Supported IAM Systems and Required Permissions.

Authentication Management

Click Configure Authentication Method to set up SAML-based single sign-on (SSO) for Private Access and Internet Access user authentication.

For more information, see Single Sign-On and Configuring SAML Single Sign-On.

Important:

You must grant the data upload permission from the IAM Management tab for the IAM system you intend to use for SSO.

Note:

Zero Trust Secure Access only supports SSO for one IAM system at a time.

Reauthentication Settings

Configure the following re-authentication settings for Private Access and Internet Access desktop and mobile users:

  • The period before Private Access requires re-authentication (module and browser-based)

  • The period before Private Access automatically signs out inactive users (module only)

  • The period before Internet Access automatically signs out inactive users (module and browser-based)