Citrix ShareFile - SAML Relying Party Configuration RSA Ready Implementation Guide
2 years ago
Originally Published: 2023-08-02

This section describes how to integrate RSA Cloud Authentication Service with Citrix ShareFile using SAML Relying Party.

Configure RSA Cloud Authentication Service

Perform these steps to configure RSA Cloud Authentication Service as Relying Party to Citrix ShareFile.

Procedure

  1. Log on to RSA Cloud Administration Console.
  2. On the Authentication Clients menu, click Relying Parties.
    Saneesh_0-1690965995084.png
  3. Click Add a Relying Party on the My Relying Parties page.
    Saneesh_1-1690966020490.png
  4. In the Relying Party Catalog, click Add for Service Provider SAML.
    Saneesh_2-1690966047373.png
  5. On the Basic Information page, in the Name field, enter a name for the Service Provider.
  6. Click Next Step.
  7. On the Authentication page, select SecurID Access manages all authentication.
  8. In the Primary Authentication Method list, select your desired logon method as Password or SecurID.
  9. In the Access Policy list, select a policy that was previously configured.
    Saneesh_3-1690966069378.png
  10. Click Next Step.
  11. Configure connection profile for ShareFile manually.
  12. Scroll down to the Service Provider Metadata section.
    Saneesh_4-1690966090939.png
    • ACL URL – Copy this from the Single sign-on/SAML 2.0 Configuration section of Login & Security Policy tab under Security on the ShareFile homepage.
    • Service Provider Entity ID –https://<your domain>.sharefile.com
    Saneesh_5-1690966120222.png
  13. Select Override and replace it with https://<your domain>.sharefile.com or select Default Service Provide Entity ID.
  14. Click Download Certificate and click Choose File and attach the .PEM file in the configuration. Fill the ACS URL and Service Provider Entity ID value.
    Saneesh_6-1690966162498.png
     

     

    Saneesh_8-1690966201834.png
  15.  Configure User Identity for NAMEID mapping.
    Saneesh_9-1690966229752.png

    Identity Type – Email Address

    Property - mail

  16. Click Save and Finish.
  17. On the My Relying Parties page, from the Edit list, select View or Download IdP Metadata.
    Saneesh_10-1690966266179.png
  18. On the top menu, click Publish Changes.

Configure Citrix ShareFile

Perform these steps to configure Citrix ShareFile.

Procedure

  1. Log on to ShareFile admin console. https://<Your domain>.sharefile.com.
  2. Select Security > Login & Security Policy.
    Saneesh_11-1690966357013.png
  3. Scroll down to Single sign-on/SAML2.0 Configuration. Copy the ACS URL and SP-Initiated Login URL for future needs.
  4. Fill Basic Settings with necessary information.
    Saneesh_12-1690966377626.png

    Your IDP Issuer/Entity ID :Copy the auto-generated entity id from RSA .

    Login URL: Copy-paste the above value of IDP Issuer.

  5. Fill the Optional Settings form as shown in the following figure.
    Saneesh_13-1690966403742.png
  6. Click Save.

Notes

ACS URL copied from Single sign-on/SAML2.0 Configuration will be used on the RSA end (Step 12 in the previous section). 

 

Configuration is complete.

Return to main page.