Salesforce Experience Cloud - SAML Relying Party Configuration - RSA Ready Implementation Guide
This article describes how to integrate RSA with Salesforce Experience Cloud using SAML Relying Party.
Configure RSA Cloud Authentication Service
Perform these steps to configure RSA Cloud Authentication Service as Relying Party to Salesforce Experience Cloud.
Procedure
- Sign in to the RSA Cloud Administration Console.
- Navigate to the Authentication Clients menu, and from the dropdown, select Relying Parties.
- In the Relying Party Catalog, select Add a Relying Party and click Add for Service Provider SAML.
- On the Basic Information page, enter a name for the application in the Name field and click Next Step.
- In the Authentication tab, select SecurID manages all authentication.
- Select Access Policy as required and click Next Step.
- To provide Service Provider details, select Enter Manually, and provide the following details:
- Assertion Consumer Service (ACS) URL: https://<Current My Domain URL>. To obtain current my domain url go to Company Settings > My Domain on the Salesforce Experience Cloud admin console.
- Service provider entity ID can be given any value provided it is the same as the Entity ID on the salesforce side of configuration.
- In the SAML Response Protection section, select IdP signs assertion within response if not already selected and download the certificate by clicking Download Certificate.
- Under the User Identity section, click Connection Profile Show Advanced Configuration, and then configure Identifier Type and Property, if not already configured, as follows:
- Identifier Type: Auto Detect
- Property: Auto Detect
- Click Save and Finish.
- On the My Relying Parties page, click Edit dropdown and select Metadata option to download the metadata.
- Use this metadata file to configure Salesforce, and then update the RSA configuration by downloading the latest metadata from Salesforce. (Edit the connector created on RSA and import the latest metadata from Salesforce in the Connection Profile tab.)
- Click Publish Changes to save your settings. After publishing, your application will be enabled for SSO.
Configure Salesforce Experience Cloud
Perform these steps to configure Salesforce Experience Cloud.
Procedure
- Log in to Salesforce Experience Cloud admin console: https://login.Salesforce Experience Cloud.com
- In the Salesforce Experience Cloud console, click the gear icon and select Setup.
- In the left pane, under the Identity section, search for and select Single Sign-On Settings.
- Click Edit and select the SAML Enabled checkbox under Federated Single Sign-On Using SAML if it is not already selected, then click Save.
- Select New from Metadata File.
- Choose the metadata file downloaded from RSA Platform and click Create.
- Upload the downloaded IdP certificate in the Identity Provider Certificate section by clicking Choose File, then click Save. Ensure that the Entity ID is the same as what is configured as the Service Provider Entity ID on RSA.
- Click Download Metadata if you want to import the salesforce metadata to RSA.
- Navigate to My Domain under Company Settings. Click Edit under Authentication Configuration, check the checkbox next to your configuration name, and click Save.
The configuration is complete.
Return to Salesforce Experience Cloud - RSA Ready Implementation Guide
Related Articles
Salesforce Experience Cloud - RSA Ready Implementation Guide 7Number of Views Self-Service Console User Experience 40Number of Views SailPoint IdentityNow - End User Logon Experience 21Number of Views SailPoint IdentityIQ 8.1 - End User Logon Experience - SecurID Access Implementation Guide 24Number of Views FIM - user (s) experiencing difficulty with SSO - Expired Certificate 10Number of Views
Trending Articles
RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide RSA Authentication Manager 8.9 Release Notes (January 2026) How to install the jTDS JDBC driver on WildFly for use with Data Collections in RSA Identity Governance & Lifecycle RSA Authentication Manager 8.8 Setup and Configuration Guide Artifacts to gather in RSA Identity Governance & Lifecycle
Don't see what you're looking for?