Skyhigh Security Service Edge (SSE) Admin Portal - SAML My Page SSO Configuration - RSA Ready Implementation Guide
This article describes how to integrate Skyhigh Security Service Edge (SSE) admin portal with RSA Cloud Authentication Service for cloud administrators using My Page SSO.
Configure RSA Cloud Authentication Service
Perform these steps to configure RSA Cloud Authentication Service using My Page SSO.
Procedure
- Sign in to RSA Cloud Administration Console.
- Enable My Page SSO by accessing the RSA Cloud Administration Console > Access > My Page > Single Sign-On (SSO). Ensure it is enabled and protected using two-factor authentication - Password and Access Policy.
- On the Applications > Application Catalog page, click Create From Template.
- Click Select for SAML Direct.
- On the Basic Information page, choose Cloud.
- Enter the name for the application in the Name field and select Next Step.
- On the Connection Profile page, choose IdP-initiated.
- In the Data Input Method section, select Import Metadata and choose the metadata file downloaded from Skyhigh.
- Review the following values that are auto-filled or auto-selected:
- Assertion Consumer Service(ACS) URL
- Service Provider Entity ID
- Identity Provider Entity ID should have the default value selected. Select the default value if not already selected.
- Audience for SAML Response should have the default value selected. Select the default value if not already selected.
- Under the SAML Request Protection section of Message Protection, SP signs SAML Requests should be selected and certificate added.
- Under the SAML Response Protection section of Message Protection, IdP signs assertion within response should be selected.
- The Encrypt Assertion checkbox should be selected, and the certificate should be added.
- Download the certificate to be used for the Skyhigh SSE admin portal configuration.
- Click Next Step.
- Choose your desired Access Policy for this application and click Next Step.
- Make the desired changes to the Portal Display option and click Next Step.
- Make desired changes to the Fulfillment page and click Save and Finish.
- Click Publish Changes.
Configure Skyhigh
Perform these steps to configure Skyhigh SSE admin portal.
Procedure
- Log in to your Trellix account and click the user symbol in the upper-right corner.
- Edit the Identity Provider section under Tenant Settings and click the Enable Identity Provider SSO toggle switch.
- Provide the following values.
- Issuer: This is the Identity Provider Entity ID from the RSA configuration.
- Login URL: This value is the same as Issuer.
- Certificate: Upload the downloaded certificate from the RSA side.
- Add your admin account to the exempt list and save the changes.
- Download the SAML Metadata to be used on the RSA-side configurations.
Note: Relying party integration and SP-Initiated flow for My page are not supported.
The configuration is complete.
Return to Skyhigh Security Service Edge (SSE) Admin Portal - RSA Ready Implementation Guide.
Related Articles
Release Notes Archive - Cloud Authentication Service and Authenticators (August 2020 - March 2020) 88Number of Views Set the RSA Authentication Manager internal database password to optional 228Number of Views Move RSA Authentication Manager 8.1 users from the internal database to an external identity source along with their group… 500Number of Views How to restart services on a Check Point firewall in order to use the sdopts.rec file 186Number of Views RSA Authentication Manager 8.9 Release Notes (January 2026) 264Number of Views
Trending Articles
Passwordless Authentication in Windows MFA Agent for Active Directory – Quick Setup Guide RSA Authentication Manager 8.9 Release Notes (January 2026) RSA Authentication Manager Upgrade Process RSA Authentication Manager 8.7 SP2 Setup and Configuration Guide An example of SSO using SAML and ADFS with RSA Identity Management and Governance 6.9.x
Don't see what you're looking for?