Integrating with SAML
SAML (Security Assertion Markup Language) enables Single Sign-On by exchanging authentication data between an SAML Identity Provider (IdP) and BMC Client Management, which acts as a SAML Service Provider (SP). It uses secure XML-based assertions to verify user identity.
SAML parameters
As a BMC Client Management administrator, you must get the following settings from a BMC Helix Single Sign-On and SAML administrator. For parameters required to configure BMC Helix Single Sign-On and SAML with BMC Client Management, see SAML parameters.
To configure BMC Client Management to integrate with SAML
As a BMC Client Management administrator, you need the required parameters to configure SAML in BMC Client Management.
To apply the SAML settings, perform the following steps:
- In the BMC Client Management console, go to Global Settings > System Variables.
- Select Single Sign On.
- From the SSO Mode list, select SAML.
- To upload the metadata file, scroll down and click Set The SAML IDP Metadata.
- Enter the following parameter values:
- UI mode
- (For iFrame UI Mode) Additional Frame Src
- BCM Master base URL
- Accepted Time Before (sec)
- Accepted Time After (sec)
- SAML Signature Digest
- Click Save Parameters.
Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*