This section describes how to integrate RSA SecurID Access with Fortanix Data Security Manager using a SAML SSO Agent.
Architecture Diagram
Configure RSA Cloud Authentication Service
Perform these steps to configure RSA Cloud Authentication Service as an SSO Agent SAML IdP to Fortanix Data Security Manager.
Procedure
1. Sign into the RSA Cloud Administration Console and browse to Applications > Application Catalog, click Create From Template and select SAML Direct.
2. On the Basic Information page, specify the application name and click Next Step.
3. In the Initiate SAML Workflow section:
a. Connection URL: In the Connection URL field, enter the url: https://sdkms.fortanix.com.
b. Select the SP-initiated radio button.
4. In the SAML Identity Provider (Issuer) section:
a. Identity Provider URL : This will be automatically generated.
b. Issuer Entity ID : This will be automatically generated.
c. Click Generate Cert Bundle to generate and download a zip file containing the private key and certificate. Unzip the downloaded file to extract the certificate and private key.
d. Select the first Choose File and upload the RSA SecurID Access private key.
e. Select the second Choose File and upload the RSA SecurID Access public certificate.
5. Under Service Provider section:
a. Assertion Consumer Service (ACS) URL: In Assertion Consumer Service (ACS) URL field enter: https://sdkms.fortanix.com/saml.
b. Audience (Service Provider Entity ID): In Audience field enter: https://sdkms.fortanix.com/saml/metadata.xml.
6. Under User Identity section, select Email Address from the Identifier Type drop-down list, select the name of your user Identity Source and select the property value as mail.
7. Scroll to the bottom of the page and click Next Step.
8. On the User Access page, select the access policy the identity router will use to determine which users can access the Fortanix service provider. Click Next Step.
9. On the Portal Display page, configure the portal display and other settings. Click Save and Finish.
10. Click Publish Changes in the top left corner of the page, and wait for the operation to complete.
11. Navigate to Applications > My Applications and locate Fortanix in the list and from the Edit option, select Export Metadata.
Configure Fortanix Data Security Manager
Perform these steps to integrate Fortanix Data Security Manager with RSA SecurID Access as a SAML SSO Agent.
Procedure
1. Log in to your Fortanix DSM portal.
2. From the left panel click Settings > AUTHENTICATION > SINGLE SIGN-ON.
3. Add the SAML integration, and upload the SAML file downloaded from Step 11 of Configure RSA Cloud Authentication Service.
4.Enter your custom SSO Title and Logo URL.
5. Click ADD INTEGRATION.
6. Once your have added the configuration successfully, you will be able to see your configuration:
Configuration is complete.
For additional integrations, see "Configuration Summary" section.
Related Articles
Microsoft Entra ID External MFA - Relying Party Configuration Using OIDC - RSA Ready Implementation Guide 649Number of Views Microsoft Entra ID - SAML My Page SSO Configuration - RSA Ready Implementation Guide 218Number of Views AWS IAM Identity Center - SAML My Page SSO Configuration - RSA Ready Implementation Guide 18Number of Views F5 BIG-IP APM 14.1 - Authentication Agent Configuration - RSA Ready SecurID Access Implementation Guide 70Number of Views CyberArk Password Vault Web Access - SAML My Page SSO Configuration - RSA Ready Implementation Guide 67Number of Views
Trending Articles
Download RSA SecurID Access Cloud User Event audit logs using Cloud Administration REST API CLU RSA Authentication Manager 8.9 Release Notes (January 2026) AFX Server Fails to Start with 'Could Not Build a Validated Path' and 'Timed Out Waiting for AFX Applications to Start' in… AFX Server stuck in 'Not running' State, with error 'timed out waiting for AFX applications to start' Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory