Kentik - SAML Relying Party Configuration - RSA Ready Implementation Guide
Configure RSA Cloud Authentication Service
Perform these steps to configure RSA Cloud Authentication Service as Relying Party to Kentik.Procedure
- Sign in to RSA Cloud Administration Console.
- Click Authentication Clients > Relying Parties.
- On the Relying Party Catalog page, click Add a Relying Party and click Add for Service Provider SAML.
- On the Basic Information page, enter the name for the application in the Name field and click Next Step.
- On the Authentication page, choose SecurID manages all authentication.
- Select your desired Access Policy as required and click Next Step.
- For providing Service Provider details:
- Select Import Metadata and click Choose File.
- Select the file that is downloaded from the Service Provider.
Refer to the Configure Kentik section to obtain the metadata file.
- Review the ACS URL and Service Provider Entity ID values that are auto-filled.
- In the SAML Response Protection section, choose IdP signs entire SAML response.
- Download the certificate by clicking Download Certificate.
- Click Show Advanced Configuration.
- Under the User Identity section, configure Identifier Type and Property. For example, Identifier Type: Auto Detect and Property: Auto Detect.
- Under the Attribute Extension section, add the following attribute.
- Attribute Name: nameID
- Attribute Source: Identity Source
- Property: mail
- Click Save and Finish.
- On the My Relying Parties page, click the Edit drop-down icon and select the Metadata option to download the metadata.
- Click Publish Changes. Your application is now enabled for SSO.
Configure Kentik
Perform these steps to configure Kentik.Procedure
- Log on to Kentik account with administrator credentials.
- Click Organization Settings > Authentication &SSO.
- Turn on the SSO Enabled toggle switch to enable SSO.
- Provide the following details:
- Identity Provider (IDP) SSO Entry Point URL: The SingleSignOnService value that can be obtained from the metadata file downloaded from RSA.
- Profile attribute for User Email: nameID
- IDP public Signing Key: Copy and paste the certificate downloaded from RSA.
- Click Download Kentik SP metadata to download SP metadata, which is used to configure RSA.
- Click Save.
Return to Kentik - RSA Ready Implementation Guide.
Related Articles
Microsoft Entra ID External MFA - Relying Party Configuration Using OIDC - RSA Ready Implementation Guide 629Number of Views Palo Alto NGFW Global Protect - SAML Relying Party Configuration - RSA Ready Implementation Guide 130Number of Views Microsoft Entra ID - SAML Relying Party Configuration - RSA Ready Implementation Guide 97Number of Views Microsoft Office 365 - SAML Relying Party Configuration - RSA Ready Implementation Guide 259Number of Views Microsoft 365 - SAML and SCIM Relying Party Configuration - RSA Ready Implementation Guide 55Number of Views
Trending Articles
RSA Authentication Manager 8.9 Setup and Configuration Guide How to 'Trust' the RSA Authentication Manager Security Console Self-Signed Root CA certificate and prevent Cert warnings. RSA Authentication Manager 8.9 Release Notes (January 2026) Configure RSA Authentication Manager as a Secure Proxy Server for Cloud Access Service RSA Authentication Manager Upgrade Process
Don't see what you're looking for?