Orca Security - SAML Relying Party Configuration - RSA Ready Implementation Guide
Configure RSA Cloud Authentication Service
Perform these steps to configure RSA Cloud Authentication Service.Procedure
- Sign in to RSA Cloud Administration Console.
- Click Authentication Clients > Relying Parties.
- On the Relying Party Catalog page, click Add a Relying Party and click Add for Service Provider SAML.
- On the Basic Information page, enter the name for the application in the Name field and click Next Step.
- On the Authentication page, choose SecurID manages all authentication.
- Select a Primary Authentication Method and Access Policy as required and click Next Step.
- Scroll down to the Service Provider section and enter below details:
- ACS URL: https://app.us.orcasecurity.io/api/sso/acs/ <Account_id>
- Service Provider Entity ID: Same as ACS URL.
- In the SAML Response Protection section, choose IdP signs assertion within response.
- Download the certificate by clicking Download Certificate.
- Click Show Advanced Configuration.
- Under the User Identity section, configure Identifier Type as Email Address and Property as mail.
- Under the Statement Attributes section, add the following attributes.
- Attribute Name: FirstName, Attribute Source: Identity Source, Property: givenName
- Attribute Name: LastName, Attribute Source: Identity Source, Property: sn
- Attribute Name: Email, Attribute Source: Identity Source, Property: mail
- Click Save and Finish.
- On the My Relying Parties page, click the Edit drop-down icon and select the Metadata option to download the metadata.
- Click Publish Changes. Your application is now enabled for SSO.
Configure Orca Security
Perform these steps to configure Orca Security.Procedure
- Log on to Orca Security with administrator credentials.
- In the left pane on the home page, click Settings.
- In the left pane, click Integrations.
- Under SSO, click Configure.
- Provide the following details:
- Account ID: A string identifying the Orca Security tenant used for RSA configuration.
- SSO Endpoint URL: The SingleSignOnService value that can be obtained from the metadata file downloaded from RSA.
- Issuer: The entityID value that can be obtained from the metadata file downloaded from RSA.
- X509 Public Certificate: The certificate downloaded from RSA.
- Make sure that SSO is enabled.
- Click Save.
Return to Orca Security - RSA Ready Implementation Guide.
Related Articles
Palo Alto NGFW Global Protect - SAML Relying Party Configuration - RSA Ready Implementation Guide 110Number of Views Microsoft Office 365 - SAML Relying Party Configuration - RSA Ready Implementation Guide 242Number of Views Workday - SAML Relying Party Configuration - RSA Ready Implementation Guide 4Number of Views Okta - SAML Relying Party Configuration - RSA Ready Implementation Guide 45Number of Views Tenable Vulnerability Management - SAML Relying Party Configuration - RSA Ready Implementation Guide 20Number of Views
Trending Articles
Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA Authentication Manager 8.9 Release Notes (January 2026) How to factory reset an RSA Authentication Manager 8.x hardware appliance without a factory reset button from the Operatio… Deploying RSA Authenticator 6.2.2 for Windows Using DISM Artifacts to gather in RSA Identity Governance & Lifecycle
Don't see what you're looking for?