Slack - SAML Relying Party Configuration - RSA Ready Implementation Guide
Configure RSA Cloud Authentication Service
Perform these steps to configure RSA Cloud Authentication Service as Relying Party to Slack.Procedure
- Sign in to RSA Cloud Administration Console.
- Click Authentication Clients > Relying Parties.
- Click Add a Relying Party on the My Relying Parties page.
- On the Relying Party Catalog page, click Add for Service Provider SAML.
- On the Basic Information page, enter a name for the Service Provider in the Name field.
- Click Next Step.
- On the Authentication page, choose SecurID Access manages all authentication.
- In the Primary Authentication Method list, select your desired login method as either Password or SecurID.
- In the Access Policy for Additional Authentication list, select a policy that was previously configured.
- Click Next Step.
- Click Enter Manually on the Connection Profile page.
- In the Service Provider Metadata section, provide the details in the following format:
- ACS URL: https://<workspace>.slack.com/sso/saml. Replace <workspace> with your workspace name value.
- Service Provider Entity ID: Ensure that the value is https://slack.com.
- Scroll down to the Message Protection section and choose the IdP signs entire SAML response option.
- Click Download Certificate to download the IDP signing certificate.
- Configure User Identity for NAMEID mapping.
- Identifier Type – Email Address
- Property – mail
- In the Attribute Extension section, enter User.Email in the Attribute Name field, select Identity Source in the Attribute Source drop-down list, and select mail in the Property drop-down list.
- Scroll down to the Identity Provider section and make a note of the Entity ID field value. This value is required during the Slack configuration.
- Click Save and Finish.
- Click Publish Changes.
Configure Slack
Perform these steps to configure Slack.Procedure
- Sign in to Slack admin console - https://<workspace>.slack.com/admin.
- Click the Menu in the upper-left corner and click Settings & permissions.
- Click the Authentication tab.
- If you are configuring SAML Authentication for the first time, click Configure. If SAML Authentication was configured previously, click Change Settings in the SAML Authentication Settings section.
- In the Configure SAML Authentication section, enable the Configure toggle switch.
- Enter your Cloud Identity Provider URL (from the metadata file) in the SAML 2.0 Endpoint (HTTP) field and your Cloud Identity Provider Entity ID in the Identity Provider Issuer field.
- Copy the RSA public certificate extracted from the zip file during configuration and paste it into the Public Certificate field.
- Scroll down to the Advanced Options section and click the expand.
- Enter your Service Provider URL in the Service Provider Issuer field.
- Choose how the SAML response from your IDP is signed. You must choose at least one option.
- Click Save Configuration.
The configuration is complete.
Return to Slack - RSA Ready Implementation Guide .
Related Articles
Citrix NetScaler - SAML Relying Party Configuration - RSA Ready Implementation Guide 11Number of Views Microsoft Office 365 - SAML Relying Party Configuration - RSA Ready Implementation Guide 259Number of Views Palo Alto NGFW Global Protect - SAML Relying Party Configuration - RSA Ready Implementation Guide 130Number of Views Microsoft Entra ID External MFA - Relying Party Configuration Using OIDC - RSA Ready Implementation Guide 629Number of Views AWS IAM Identity Center - SAML Relying Party Configuration - RSA Ready Implementation Guide 12Number of Views
Trending Articles
RSA Authentication Manager 8.9 Setup and Configuration Guide How to 'Trust' the RSA Authentication Manager Security Console Self-Signed Root CA certificate and prevent Cert warnings. RSA Authentication Manager 8.9 Release Notes (January 2026) Configure RSA Authentication Manager as a Secure Proxy Server for Cloud Access Service RSA Authentication Manager Upgrade Process
Don't see what you're looking for?