Small Improvements - SAML Relying Party Configuration - RSA Ready Implementation Guide
2 years ago
This article describes how to integrate RSA with Small Improvements using SAML Relying Party.
   

Configure RSA Cloud Authentication Service

Perform these steps to configure RSA Cloud Authentication Service as Relying Party to Small Improvements.
Procedure
  1. Sign in to RSA Cloud Administration Console. 
  2. Click Authentication ClientsRelying Parties.                                                                                                                                               image.png
  3. On the Relying Party Catalog page, click Add a Relying Party and click Add for Service Provider SAML.                                                   image.png
  4. On the Basic Information page, enter the name for the application in the Name field and click Next Step.                                            image.png
  5. On the Authentication page, choose SecurID manages all authentication
  6. Select a Primary Authentication Method and Access Policy as required and click Next Step.                                                                 image.png
  7. Provide the Service Provider details in the following format.
    1. ACS URL: https://<subdomain>.small-improvements.com/saml/consume.
    2. Service Provider Entity ID: <Small Improvements Entity ID>
      Refer to the Notes section for instructions on how to obtain the ACS URL and Entity ID.                                                               image.png
  8. In the SAML Response Protection section, choose IdP signs assertion within response.
  9. Download the certificate by clicking Download Certificate.                                                                                                                        image.png
  10. Click Show Advanced Configuration.
  11. Under the User Identity section, configure Identifier Type and Property. For example, Identifier TypeAuto Detect and PropertyAuto Detect.                                                                                                                                                              image.png
  12. Click Save and Finish.
  13. On the My Relying Parties page, click the Edit drop-down icon and select the Metadata option to download the metadata.              image.png
  14. Click Publish Changes. Your application is now enabled for SSO.                                                                                                           image.png   image.png
     

Notes

ACS URL can be constructed by replacing the subdomain tag.
https://<subdomain>. small-improvements.com/saml/consume
If you do not have a subdomain, contact support@small-improvements.com to set this up for you.
Entity ID can be obtained under the SAML Integration section, which is present in the Application Issuer URL field, as shown in the following figure.                                 image.png
   

Configure Small Improvements

Perform these steps to configure Small Improvements.
Procedure
  1. Log on to Small Improvements with administrator credentials.
  2. Select Admin, scroll down to Integrations, then select SAML SSO.                                                                                                           image.png
  3. Select the Enable SAML for SSO checkbox and provide the following details:
    1. Application Issuer URL: Provide the URL as https://www.small-improvements.com.
    2. HTTP Endpoint: The SingleSignOnService value that can be obtained from the metadata file downloaded from RSA.
    3. x.509 Certificate: Copy and paste the certificate downloaded from RSA.                                                                                        image.png
  4. Select the Enable access via login/password checkbox.
  5. Provide a unique name in the SAML Prompt field and click Save.                                                                                                              image.png
The configuration is complete.
Return to Small Improvements - RSA Ready Implementation Guide.