Setting up SAMLv2 authentication in Remedy Single Sign-On


You can configure the Remedy Single Sign-On server to authenticate TrueSight Capacity Optimization users through a SAML authentication.

Complete the following procedures to authenticate the users and authorize them to use the required product features:

Configuring SAMLv2 authentication in Remedy SSO

Failed to execute the [excerpt-include] macro. Cause: [Error number 2 in 0: No wiki with id [confluencePage:page] could be found]. Click on this message for details.

To configure the SAMLv2 authentication in Remedy SSO for the TrueSight Presentation Server

  1. Log in to the Remedy SSO Admin console.
  2. In the left navigation panel of the Add Realm or Edit Realm page, click Authentication.
  3. In the Authentication Type field, click SAML.
  4. Enter the SAML details. For more information on parameters, see SAMLv2 authentication parameters.

    Important

    When you configure the SAML authentication parameters for the Presentation Server, you must set the User ID Transformation field to RemoveEmailDomain and enable the Force Authentication check box.

  5. Click Save.
  6. In the left navigation panel of the Add Realm or Edit Realm page, click Authentication.
  7. In the Authentication Type field, click SAML and click Enable Chaining Mode.
  8. Click Add Authentication.
  9. In the Authentication Type field, click LOCAL.
  10. Enter the LOCAL details. For more information on parameters, see LOCAL authentication parameters.
  11. Create users and user groups for the LOCAL authentication. 
    The users in LOCAL should be exactly same as the users in SAML.
    Alternatively, the users can also be created using import script under the migration utility.
  12. Associate users to the user groups.
  13. Click Save.
Important

 Add the LOCAL authentication entry below the SAML authentication entry, and do not promote or move the LOCAL entry above the SAML entry.

Failed to execute the [excerpt-include] macro. Cause: [Error number 2 in 0: No wiki with id [confluencePage:page] could be found]. Click on this message for details.

Failed to execute the [excerpt-include] macro. Cause: [Error number 2 in 0: No wiki with id [confluencePage:page] could be found]. Click on this message for details.

Adding SAMLv2 referrer host to the Presentation Server

Run the following commands from the Presentation Sever command prompt to configure the SAMLv2 referrer host name:

  1. tssh properties set tspsProxyHosts <SAMLv2_referrer_FQDN_host_name>,<remedy_sso_FQDN_host_name>
  2. tssh properties reload

Where to go from here

Managing-access-control

 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*