Aurelius - SAML SSO Agent Configuration - RSA Ready SecurID Access Implementation Guide
This section describes how to integrate RSA SecurID Access with Aurelius using a SAML SSO Agent.
Architecture Diagram
Configure RSA Cloud Authentication Service
Perform these steps to configure RSA Cloud Authentication Service as an SSO Agent SAML IdP to Aurelius.
Procedure
-
Sign into the RSA Cloud Administration Console and browse to Applications > Application Catalog
-
Click on Create From Template found in he upper right of the page then select SAML Direct
-
On Basic Information page enter a Name for the application, ie. Aurelius Then click on Next Step.
-
On Connection Profile page
-
In Connection URL field, set it to the Identity Provider URL found below. For example: https://portal.sso.pe.rsa.net/IdPServlet?idp_id=jnsbs7x87itU
-
Choose SP-Initiated and select POST for the binding method.
- Scroll down to SAML Identity Provider (Issuer) section.
-
Note the Identity Provider URL and Issuer Entity ID. These values are automatically generated. They may be needed later for the configuration of Aurelius
-
Click on Generate Cert Bundle, set a a common name for your company certificate. Then click Generate and Download
-
Select Choose File and upload the private key from the generated certificate bundle
-
Select Choose File and upload the cert from the generated certificate bundle
-
Select Include Certificate on Outgoing Assertion
- Scroll down to Service Provider section
-
Enter the Assertion Consumer Service (ACS) for your instance of Aurelius For example https://api.aureliuslab.com/v1/saml/assert This is foud in the Aurelius documenation for configuring SSO via SAML 2.0.
-
Enter the Audience (Service Provider Issuer ID) Enter a random string that should match your audience on Aurelius. For example RSAaurelius
- Scroll down to User Identity section
-
Ensure Identifier Type = Email Address, set your Identity Source and Property = mail
- Click Next Step
-
-
On User Access page select the Access Policy you require. Allow All Authenticated Users is the least restrictive. Click Next Step
-
On Portal Display Page
-
Select Display in Portal
-
Upload an Application Icon if you wish
-
Set an Application Tooltip if you wish.
-
Click on Save and Finish
-
-
Click on Publish Changes. Your application is now enabled for SSO. If you make any additional changes to the application configuration you will need to republish.
-
Browse to Application > My Applications
-
Locate newly create application for Aurelius
-
Click on Down Arrow next to Edit button
-
Select Export Metadata. This will be used below for Aurelius configuration.
Configure Aurelius
Perform these steps to integrate Aurelius with RSA SecurID Access as a SAML SSO Agent.
Procedure
-
Sign into Aurelius and browse to Settings and scroll down to Manage Single Sign-On.
- For SSO login and logout URLs enter the Identity Provider URL from the RSA Cloud Authentication Service configuration above. For example: https://portal.sso.pe.rsa.net/IdPServlet?idp_id=jnsbs7x87tr
-
In the Audience Restriction enter the Audience (Service Provider Issuer ID) supplied above. For example: RSAaurelius
-
Select the certificate information from the metadata file downloaded for the RSA Cloud Authentication Service copying the data between the <x509certificate> tags.
-
Click the Add Certificate button and paste the certificate data.
-
Click on Save.
Configuration is complete.
See main page for more certification information.
Related Articles
Microsoft Office 365 - SAML Relying Party Configuration - RSA Ready Implementation Guide 252Number of Views Okta - SAML Relying Party Configuration - RSA Ready Implementation Guide 45Number of Views Microsoft Office 365 - SAML My Page SSO Configuration - RSA Ready Implementation Guide 122Number of Views Microsoft Entra ID - SAML My Page SSO Configuration - RSA Ready Implementation Guide 206Number of Views Palo Alto NGFW Global Protect - SAML Relying Party Configuration - RSA Ready Implementation Guide 110Number of Views
Trending Articles
Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA Authentication Manager 8.9 Release Notes (January 2026) RSA Governance & Lifecycle 8.0.0 Administrators Guide RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide