HTTP Federation Proxy Applications
HTTP Federation (HFED) Proxy is a method for integrating web applications that do not support Security Assertion Markup Language (SAML) and that use a sign-in form to authenticate users.
HFED provides a convenient way to configure SSO for non-SAML applications without requiring your team to invest significant IT time and expense. HFED includes a "discovery" feature that automatically populates sign-in form fields with the appropriate settings. You can manually specify settings that are not discovered or that you want to change.
User credentials for HFED applications are encrypted in the user's keychain, which is stored on the identity router. Each user has a keychain for each HFED application being accessed. For example, AppName_Username, AppName_Password are credentials that are stored in the same keychain for a user. Keychain credentials are synchronized between identity routers and clusters, and must be backed up periodically.
Note: If you configure RSA to use SSL when connecting to a protected application using the HFED Proxy method, the web server hosting the application must have a valid SSL certificate signed by a certificate authority (CA) that the identity routers trust. For more information, see List of Trusted Certificate Authorities for HFED and Trusted Headers Applications.
Concept Information
Choosing a Connection Method to Add an SSO Agent Application
Related Tasks
Add an Application Using HTTP Federation Proxy
Reference Materials
Related Articles
RSA SecurID Access is unable to proxy to HTTPS hosts for HTTP Federation Proxy or Trusted Header Applications 38Number of Views Configure a Proxy Server 46Number of Views FileCloud-SecurID-Access-SAML-Integration 11Number of Views Access Fulfillment Express (AFX) Connector import fails to import enabled capabilities if no mappings are defined in RSA I… 36Number of Views When setting a lost password for a token and set by number of days and hours it is not applying the days only the hours 11Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Reporting on RSA Authentication Manager 8.x users with On-Demand Token, a fixed passcode or a hardware/software token assi… How to Download OTP Token Seed Files from myRSA Anomalix idGenius - SAML Relying Party Configuration - RSA Ready Implementation Guide RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide