Citrix ShareFile - SAML IDR SSO Configuration RSA Ready Implementation Guide
2 years ago
Originally Published: 2023-08-01

This section describes how to integrate Citrix ShareFile with RSA Cloud Authentication Service using IDR SSO.

Configure RSA Cloud Authentication Service

Perform these steps to configure RSA Cloud Authentication Service using IDR SSO.

Procedure

  1. Log on to RSA Cloud Administration Console and browse to Applications Application Catalog.
  2. Search for Citrix ShareFile and click Add to add the connector.
    Saneesh_0-1690881686014.png
  3. On the Basic Information page:
    1. Choose Identity Router.
    2. In the Name field, enter the name for the application and click Next Step.
      Saneesh_1-1690881717252.png
  4. Navigate to the Initiate SAML Workflow section.
    In the Connection URL field, verify the default setting.
  5. Choose IDP-initiated.
    Saneesh_2-1690881794596.png
  6. Scroll down to the SAML Identity Provider (Issuer) section.
    Saneesh_3-1690881833581.png
    1. Identity Provider URL is automatically generated .
    2. Identity Provider Entity ID is automatically generated.
    3. Click Generate Cert Bundle, set a common name for your company certificate and click Generate and Download.
    4. Select Choose File and upload the private key from the generated certificate bundle.
    5. Select Choose File and upload the cert from the generated certificate bundle. The public certificate in the bundle is used for the ShareFile configuration.
  7. Scroll down to the Service Provider section and enter the following details:
    1. Assertion Consumer Service (ACS) - Copy this from the Single sign-on/SAML 2.0 Configuration section of Login & Security Policy tab under Security on the ShareFile homepage.
    2. Audience (Service Provider Issuer ID) – https://<your domain>.sharefile.com/saml/info.
      Saneesh_4-1690881904062.png
  8. Scroll down to the user identity section and select the following:
    1. Identifier Type – Email Address
    2. Identity Source – select your user identity source.
    3. Property – mail
  9. Click Next Step.
  10. On the User Access page, select the access policy that the identity router will use to determine which users can access the application.
    Saneesh_5-1690881966069.png
  11. Click Next Step.
  12. On the Portal Display page, configure the portal display and other settings and click Save and Finish.
  13. Click Publish Changes.
    Saneesh_6-1690881990187.png

Configure Citrix ShareFile

Perform these steps to configure Citrix ShareFile.

Procedure

  1. Log on to ShareFile console. https://<Your domain>.sharefile.com.
  2. Select Security > Login & Security Policy.
    Saneesh_0-1690882180961.png
  3. Scroll down to Single sign-on/SAML2.0 Configuration. Copy the ACS URL and SP-Initiated Login URL for future needs.
  4. Fill Basic Settings with necessary information.
    Saneesh_0-1690961158156.png

    Your IDP Issuer/Entity ID: Copy the auto-generated entity id from RSA.

    Login URL: Copy-paste the above value of IDP Issuer.

  5. Fill the Optional Settings form as shown in the following figure.
    Saneesh_1-1690961191488.png
  6. Click Save.

Notes

ACS URL copied from Single sign-on/SAML2.0 Configuration will be used on the RSA end (Step 7 in the previous section).

 

 

Configuration is complete.

Return to main page.