Platform Secure Firewall Threat Defense Virtual
Activity Manage

Step 3: Provide SAML metadata from your IdP to Security Cloud

After you've configured your identity provider's SAML application with SAML metadata from Security Cloud Control, the next step is to provide the corresponding metadata from your SAML application to Security Cloud Control. See Identity Service Provider Instructions for steps specific to several commercially available identity service providers.

Before you begin

To complete this step, you need the following metadata for the SAML application on your identity provider:

  • Single Sign-on Service URL

  • Entity ID (Audience URI)

  • Signing certificate in PEM format

Depending on how your identity provider provides data, you can either upload a metadata XML file that contains all this information, or manually enter (copy and paste) the individual SAML URIs and upload the signing certificate. See Identity Service Provider Instructions for steps specific to several commercially available identity service providers.

Procedure

1

In Security Cloud Control, on the Identity Providers > Edit identity provider > SAML metadata page, do one of the following:

  • If you have an XML metadata file from your identity provider, select XML file upload and upload the XML file.

  • Otherwise, click Manual configuration and enter the endpoints for the Single Sign-on Service URL, Entity ID, and upload the public signing certificate provided by your identity provider.

2

Click Next.

What to do next

Next you'll test your integration by initiating an SSO from Security Cloud Control to your identity provider.