Skyhigh Security Service Edge (SSE) Admin Portal - SAML My Page SSO Configuration - RSA Ready Implementation Guide
This article describes how to integrate Skyhigh Security Service Edge (SSE) admin portal with RSA Cloud Authentication Service for cloud administrators using My Page SSO.
Configure RSA Cloud Authentication Service
Perform these steps to configure RSA Cloud Authentication Service using My Page SSO.
Procedure
- Sign in to RSA Cloud Administration Console.
- Enable My Page SSO by accessing the RSA Cloud Administration Console > Access > My Page > Single Sign-On (SSO). Ensure it is enabled and protected using two-factor authentication - Password and Access Policy.
- On the Applications > Application Catalog page, click Create From Template.
- Click Select for SAML Direct.
- On the Basic Information page, choose Cloud.
- Enter the name for the application in the Name field and select Next Step.
- On the Connection Profile page, choose IdP-initiated.
- In the Data Input Method section, select Import Metadata and choose the metadata file downloaded from Skyhigh.
- Review the following values that are auto-filled or auto-selected:
- Assertion Consumer Service(ACS) URL
- Service Provider Entity ID
- Identity Provider Entity ID should have the default value selected. Select the default value if not already selected.
- Audience for SAML Response should have the default value selected. Select the default value if not already selected.
- Under the SAML Request Protection section of Message Protection, SP signs SAML Requests should be selected and certificate added.
- Under the SAML Response Protection section of Message Protection, IdP signs assertion within response should be selected.
- The Encrypt Assertion checkbox should be selected, and the certificate should be added.
- Download the certificate to be used for the Skyhigh SSE admin portal configuration.
- Click Next Step.
- Choose your desired Access Policy for this application and click Next Step.
- Make the desired changes to the Portal Display option and click Next Step.
- Make desired changes to the Fulfillment page and click Save and Finish.
- Click Publish Changes.
Configure Skyhigh
Perform these steps to configure Skyhigh SSE admin portal.
Procedure
- Log in to your Trellix account and click the user symbol in the upper-right corner.
- Edit the Identity Provider section under Tenant Settings and click the Enable Identity Provider SSO toggle switch.
- Provide the following values.
- Issuer: This is the Identity Provider Entity ID from the RSA configuration.
- Login URL: This value is the same as Issuer.
- Certificate: Upload the downloaded certificate from the RSA side.
- Add your admin account to the exempt list and save the changes.
- Download the SAML Metadata to be used on the RSA-side configurations.
Note: Relying party integration and SP-Initiated flow for My page are not supported.
The configuration is complete.
Return to Skyhigh Security Service Edge (SSE) Admin Portal - RSA Ready Implementation Guide.
Related Articles
Skyhigh Security Service Edge (SSE) Admin Portal - RSA Ready Implementation Guide 18Number of Views RSA Authentication Manager Prime Help Desk Admin Portal Unlock User option grayed out 159Number of Views Recommended order of operations for RSA Passwordless 120Number of Views Replication Showing Internal Replication Error During Upgrade to RSA Authentication Manager 8.2 993Number of Views Member of User Groups showing <unavailable> in All Users report 190Number of Views
Trending Articles
Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA Authentication Manager 8.9 Release Notes (January 2026) Artifacts to gather in RSA Identity Governance & Lifecycle RSA Governance & Lifecycle 8.0.0 Administrators Guide RSA Governance & Lifecycle 8.0.0 Installation Guide
Don't see what you're looking for?