Articulate Reach 360 - SCIM Client Configuration - RSA Ready Implementation Guide
This article describes how to configure Cloud Access service (CAS) as a SCIM Client for Articulate Reach 360.
Configure CAS
Perform these steps to configure CAS as a SCIM client.
Procedure
- Sign in to RSA Cloud Administration Console, and navigate to Applications > Application Catalog.
- Click Create From Template and select SAML Direct.
- Choose Cloud on the Basic Information page.
- Enter the Name for the application and click Next Step.
- On the Connection Profile page, navigate to Initiate SAML Workflow section and choose IdP-initiated.
- Scroll down to the Service Provider section, and enter the following information:
- ACS URL: Provided from Articulate Reach 360 during the configuration.
- Service Provider Entity ID: Provided from Articulate Reach 360 during the configuration.
- Scroll down to the Identity Provider section. Make a note of the Identity Provider URL, as it will be needed for the Articulate Reach 360 configuration.
- Under the Show IdP Advanced Configuration section, proceed with the Default option for Identity Provider Entity ID and Audience for SAML Response.
- Under the Message Protection section, In the SAML Response Protection section, select IdP signs assertion within response.
- Download the certificate by clicking on Download Certificate.
- Scroll down to the User Identity section and select the following information:
- Identifier Type > Auto Detect
- Property > Auto Detect
- Under Statement Attributes. Configure the following attributes as these are required by Articulate Reach 360.
- email > Identity Source > mail
- firstName > Identity Source > giveName
- lastName > Identity Source > sn
- Click Next Step.
- In the Access Policy section, choose the policy for the application from the dropdown menu.
- In the Fulfillment section, enable the fulfillment service.
- Choose the Approver Type: None, Manager, Application Owner, Manager & Application Owner.
- Choose SCIM Endpoint from the Fulfillment Configuration Type dropdown and enter the following details:
- Base URI: Obtained during the configuration of Articulate Reach 360.
- API Key: The SCIM Auth Token obtained during the configuration of Articulate Reach 360.
Refer to the Articulate Reach 360 configuration section on how to get these values.
- Choose Next Step and Save and Finish.
- Click Publish Changes and wait for the operation to be completed.
After publishing, your application is now enabled for SSO.
Configure Articulate Reach 360 as a SCIM Server
Perform these steps to configure Articulate Reach 360 with RSA ID Plus in My Page SSO.
Procedure
- Log in to your provided tenant with an admin account. https://<Your_org_tenant>.reach360.com
- From the Manage menu, navigate to Settings.
- Scroll down to Single sign-on (SSO) authentication and click Configure SSO.
- On the Configure Single Sign-On (SSO) Authentication page, enter the following details:
- IDP SSO URL: Entity ID obtained in step 6 in the RSA configuration section.
- IDP Issue URI: Entity ID obtained in step 6 in the RSA configuration section.
- IDP Signature Certificate: Copy and paste the downloaded certificate in step 8 in the RSA configuration section.
- Response Signature Verification: Choose Assertion from the dropdown menu to match the signing of RSA of the assertion.
- Automate User Provisioning: Toggle the field to ON to enable user provisioning via SCIM.
- Scroll down and click on Save & Continue to SAML Info.
- On the Your Reach 360 SAML Information page, copy the Assertion Consumer Service URL and Audience URI, the 2 values will be used in their respective fields in step 5 in the RSA configuration section.
- Scroll down to the SCIM section and copy the values of SCIM URL and SCIM Auth Token, the 2 values will be used in their respective fields in the RSA configuration section.
- Scroll down and click Done.
SSO is now configured on Articulate Reach 360 side.
Configuration is complete
Related Articles
Articulate Reach 360 - RSA Ready Implementation Guide 58Number of Views Articulate Reach 360 - SAML Relying Party Configuration - RSA Ready Implementation Guide 29Number of Views Articulate Reach 360 - SAML My Page SSO Configuration - RSA Ready Implementation Guide 26Number of Views No buffer space available (maximum connections reached?): JVM_Bind for ApplicationInfo 75Number of Views AirWatch ADC Collector test connection fails with "This API has reached end-of-life" error in RSA Identity Governance & Li… 80Number of Views
Don't see what you're looking for?