Rapid7 - SAML My Page SSO Configuration - RSA Ready Implementation Guide
This article describes how to integrate Rapid7 with RSA Cloud Access Service (CAS) using My Page SSO.
Configure CAS
Perform these steps to configure CAS using My Page SSO.
Procedure
- Sign in to RSA Cloud Administration Console and browse to Applications > Application Catalog.
- Click Create from Template and click Select for SAML Direct.
- On the Basic Information page, choose Cloud.
- Enter a name for the application and click Next Step.
- On the Connection Profile page, navigate to the Initiate SAML Workflow section and choose IdP-initiated.
- Under Data Import method, import the metadata file from Rapid7 to populate the Assertion Consumer Service (ACS) URL value and Service Provider Entity ID.
- Scroll down to the Identity Provider section and make a note of the Identity Provider URL that is required for the Rapid7 configuration.
- Under the Message Protection section, for SAML Response Protection, choose IdP signs assertion within response.
- Scroll down to the User Identity section and select the following values:
- Identifier Type: emailAddress
- Property: mail
- Click Next Step.
- In the Access Policy section, choose the policy for the application in the drop-down list.
- On the Portal Display page, select Display in Portal.
- Click Next step.
- Configure the Fulfilment details as per your organization policy.
- Locate the application that you created on the My Applications page and click the drop-down arrow next to Edit > Export Metadata.
- Click Publish Changes.
Your application is now enabled for SSO.
Configure Rapid7
Perform these steps to configure Rapid7.
Procedure
- Log on to Rapid7 with the administrator account and browse to the Administration > Authentication: 2FA and SSO.
- Under AUTHENTICATION, navigate to SAML AUTHENTICATION SOURCE and click CONFIGURE SAML SOURCE.
- Under SAML Configuration, click Upload IDP Metadata File to upload the metadata file that was downloaded from RSA.
- Click Save to complete the SAML configuration.
- To create users on the InsightVM console, navigate to Administration > Users > User Management and click Add user.
- Fill in the details on the Add User form.
Note that the e-mail address is case sensitive and must match the existing user in RSA. - In the Authorization Method drop-down list, select SAML.
- Select the role as Global Admin and save to create the user.
The configuration is complete.
Related Articles
Limitations of strict TLS 1.2 mode in RSA Authentication Manager 8.x 1.17KNumber of Views How to configure RSA Authentication Manager to send log messages to a local file for an audit trail 304Number of Views Create a Backup Using Back Up Now 152Number of Views Error message in RSA Authentication Manager 8.x Security Console or Self-Service Console when logging in with LDAP password 1.37KNumber of Views How users can generate a temporary emergency access tokencode from RSA Authentication Manager 8.x Self-Service Console 552Number of Views
Trending Articles
Downloading RSA Authentication Manager license files or RSA Software token seed records RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory Mandatory Certificate Upgrade Required by 6th October 2025 for RSA MFA Agent for PAM, RSA MFA Agent for Apache, and Third … RSA Authentication Manager 8.9 Release Notes (January 2026)
Don't see what you're looking for?