Certified: August 03, 2023
Solution Summary
This section describes Ping Identity integration with RSA (or ID Plus) to provide a Third-Party Identity Provider (IdP) authentication using SAML 2.0.
Use Case
Ping Identity can be integrated with RSA as an IdP for Cloud Authentication Service and My Page.
Before you begin
- Make sure that all changes are correct and saved on the Ping Identity side before saving any changes on the RSA side. When the changes are saved on the RSA side, the feature will be enabled and if it does not work, then all super administrators and administrators will be locked out. Enabling the authentication through a third-party IdP disables the regular password authentication by default. The configuration must work through the IdP to gain access to the Cloud Administration Console.
- Before saving the changes on the RSA side, open a tab in your browser and log on to the Cloud Administration Console as a super administrator to create another session. You can use this session to increase the Inactivity Timeout (My Account > Company Settings > Sessions and Authentication) to ensure that the session does not time out before the configuration is complete (Make sure to change the setting back after the authentication has been tested). Additionally, you can use the second session to disable the changes on the RSA side if test authentications through third-party IdP fail. If the super administrators are unable to log on with Ping Identity, then log a case with RSA Support to turn off the third-party IdP configuration so that you can log on again with the Cloud-based password. Unless you need immediate Cloud Admin Console access to fix a production authentication down situation, the normal turnaround for such a change by RSA may be up to two business days.
- After this is successfully configured, if Ping Identity becomes unavailable for some reason, then you will have no access to the Cloud Admin Console until Ping Identity is available again. During a continued outage, you may contact RSA Support to turn off the third-party IdP feature on your tenant.
Configuration Summary
This section contains instruction steps that show how to configure Ping Identity as an IdP for RSA Cloud Authentication Service and My Page portal.
This document is not intended to suggest optimum installations or configurations. It is assumed that the reader has both working knowledge of all products involved, and the ability to perform the tasks outlined in this section. Administrators should have access to the product documentation for all products to install the required components.
All RSA and Ping Identity components must be installed and working prior to the integration.
This section of the guide includes links to the appropriate sections for configuring both sides for each use case.
Integration Configuration
RSA Terminology Changes
The following table describes the differences in the terminologies used in the different versions of RSA products and components.
|
Previous Version |
New Version |
Examples/Comments |
|---|---|---|
| Company ID | Organization ID | |
| Account | Credential | |
| Token | OTP Credential |
SecurID OTP Credential |
| Tokencode | OTP/Access Code |
SecurID OTP, SMS OTP, Voice OTP Emergency Access Code, Disable Access Code |
| Hardware Token | Hardware Authenticator | |
| Device Serial Number | Binding ID | |
| Device | Credential/Authenticator | |
| Device Registration Code | Registration Code | |
| Authenticate App | Authenticator App |
Known Issues
No known issues.
Certification Details
RSA Cloud Authentication Service
RSA My Page
Ping Identity
Related Articles
Articulate Reach 360 - SAML My Page SSO Configuration - RSA Ready Implementation Guide 26Number of Views Okta - Third-Party IdP Integration - RSA Ready Implementation Guide 54Number of Views Microsoft Azure Active Directory - Third-Party IdP Integration - RSA Ready Implementation Guide 186Number of Views Changes to the RSA Authentication Manager 8.1 Public APIs 38Number of Views RSA ID Plus FIDO Passkey Certification Status 166Number of Views
Trending Articles
Passwordless Authentication in Windows MFA Agent for Active Directory – Quick Setup Guide RSA Authentication Manager 8.9 Release Notes (January 2026) RSA Authentication Manager Upgrade Process RSA Authentication Manager 8.7 SP2 Setup and Configuration Guide An example of SSO using SAML and ADFS with RSA Identity Management and Governance 6.9.x