Questetra BPM - SAML Relying Party Configuration - SecurID Access Implementation Guide
This section describes how to integrate SecurID Access with Questetra BPM using Relying Party. Relying party uses SAML 2.0 to integrate SecurID Access as a SAML Identity Provider (IdP) to Questetra BPM SAML Service Provider (SP).
Architecture Diagram
Configure SecurID Access Cloud Authentication Service
Perform these steps to configure SecurID Access Cloud Authentication Service(CAS) as a relying party SAML IdP to Questetra BPM .
Procedure
-
Sign into the Cloud Administration Console and browse to Authentication Clients > Relying Parties and click Add a Relying Party. Then select Add for a SAML service provider.
-
On Basic Information page enter a Name for the application, ie. Questetra BPM Then click on Next Step.
-
On Authentication page.
-
select the RSA SecurID Access manages all authentication.
-
Select the desired Primary Authentication Method from the dropdown list.
-
Select the desired policy from the Access Policy for Additional Authentication.
-
Click Next Step.
-
-
On Connection Profile page.
-
Under the Service Provider Metadata section.
-
For the Assertion Consumer Service (ACS) enter the ASC URL from Questetra BPM SP information in the SSO setup below. This URL is based on your instance of Questetra BPM. For example, https://mytestenv.questetra.net/saml/SSO/alias/bpm.
-
For the Service Provider Entity ID enter the Enitity from Questetra BPM SP information in the SSO setup below. This URL is based on your instance of Questetra BPM. For example, https://mytestenv.questetra.net/.
-
Uncheck SP signs SAML Requests.
-
Check IdP signs assertion within response.
-
Click on Download Certificate. This will be used below in the Questetra BPM configuration.
-
Open Advanced Configuration section.
-
Note the Identity Provider Entity ID field . For Example :https://rsa-test-pe.auth-demo.securid.com/saml-fe/sso.
-
-
Click on Save and Finish.
-
Browse to Authentication Clients > Relying Parties .
-
Scroll down to the your newly created Relying party and click down arrow to Edit and choose View or Download IdP MetatData and save off the metadata information if desired.
-
Click on Publish Changes. Your application is now enabled for SSO. If you make any additional changes to the application configuration you will need to republish.
Configure Questetra BPM
Perform these steps to integrate Questetra BPM with SecurID Access as a Relying Party SAML SP.
Procedure
-
Login into Questetra BPM https://<instance>.questetra.net/Login_show.
-
Under Username choose System Settings.
-
Select SSO (SAML).
-
Check Enable Single Sign-On and make sure Disable Password Authentication is unchecked.
-
Goto the SP Information section.
-
Note the Entity ID and ASC URL these will be used above in the SecurID CAS configuration.
-
Goto the IdP Configuration section.
-
For Entity ID provide the Identity Provider Entity ID from the above in the SecurID CAS configuration. For example, https://rsa-test-pe.auth-demo.securid.com/saml-fe/sso.
-
For Sign-In page URL provide the Identity Provider Entity ID from the above in the SecurID CAS configuration. For example, https://rsa-test-pe.auth-demo.securid.com/saml-fe/sso.
-
Leave the NameID format blank.
-
For Verification Certificate copy and paste the certificate downloaded above in the SecurID CAS configuration. Exclude the begin/end comments in the certificate.
-
Click on Save .
Configuration is complete.
Next Step: See main page for more certification information.
Related Articles
Microsoft Entra ID External Authentication Methods (EAM) - Relying Party Configuration Using OIDC - RSA Ready Implementati… 519Number of Views GoToMeeting - SAML Relying Party Configuration - RSA Ready Implementation Guide 14Number of Views Microsoft Office 365 - SAML Relying Party Configuration - RSA Ready Implementation Guide 252Number of Views Dropbox - SAML Relying Party Configuration - RSA Ready Implementation Guide 8Number of Views Evernote - SAML Relying Party Configuration - RSA Ready Implementation Guide 7Number of Views
Trending Articles
Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide RSA Authentication Manager 8.9 Release Notes (January 2026) RSA Governance & Lifecycle 8.0.0 Administrators Guide RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide