Palo Alto Cloud Identity Engine - SAML My Page SSO Configuration - RSA Ready Implementation Guide
This article describes how to integrate Palo Alto Cloud Identity Engine with RSA Cloud Access Service (CAS) using My Page SSO.
Configure CAS
Perform these steps to configure CAS using My Page SSO.
Procedure
- Sign in to RSA Cloud Administration Console and click Access > My Page.
- Enable Applications.
- On the Applications > Application page, click Add an Application.
- Click Create From Template and then click Select for SAML Direct.
- On the Basic Information page, choose Cloud and click Next Step.
- On the Connection Profile page, choose SP-Initiated.
- Under Data Input Method, choose Import Metadata and import the metadata obtained from Palo Alto.
- Make sure that the values are automatically updated as displayed in the following image.
- Under the Message Protection section, make sure:
- SP signs SAML requests is selected. If not, then upload the SP certificate downloaded from Palo Alto.
- IdP signs entire SAML response is selected.
- Encrypt Assertion is selected, and the certificate for encrypting the assertion is uploaded.
- Click Next Step and select the access policy for your application.
- Make selections on the remaining tabs as per your business requirements, then click Save.
- Click Publish Changes.
Configure Palo Alto Cloud Identity Engine
Perform these steps to configure Palo Alto Cloud Identity Engine.
Procedure
- Sign in to https://apps.paloaltonetworks.com/hub and choose Cloud Identity Engine.
- Under Authentication > Authentication Types, click Add New Authentication Types.
- Under SAML 2.0, click Set Up.
- Download the SP Certificate and SP Metadata, which will be used in the RSA configuration.
- In the next section, upload the metadata downloaded from RSA.
- Click Test SAML Setup to test the configuration, and then click Submit.
The configuration is complete.
Related Articles
Palo Alto Cloud Identity Engine - RSA Ready Implementation Guide 2Number of Views Palo Alto NGFW 10.1.7 - REST API Configuration - RSA Ready Implementation Guide 65Number of Views RSA SecurID Access Free Trial Palo Alto Networks GlobalProtect Guide 63Number of Views To resolve 'Failed to read nst file' issue 66Number of Views Palo Alto NGFW 10.1.7 - RADIUS Configuration - RSA Ready Implementation Guide 197Number of Views
Trending Articles
Connection fails to Cloud Authentication Service when connecting through a proxy server from RSA Authentication Manager to… Downloading RSA Authentication Manager license files or RSA Software token seed records Unable to login to RSA Authentication Manager Security Console as super admin RSA Authentication Manager 8.9 Release Notes (January 2026) How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device
Don't see what you're looking for?