This article provides guidance on integrating external identity providers (IdP) such as LDAP or Okta with the Layer7 API Management suite. Customers frequently request these integrations to replace default internal accounts or to enable centralized management for appliance-level (SSH) and application-level (Policy Manager/Portal) access.
Release : 11.x
Component : API GATEWAY
The Layer7 suite supports external authentication across all primary components. Follow the relevant section below for your specific integration needs:
The local system accounts (ssgadmin, ssgconfig) can be supplemented with LDAP-authenticated users for SSH access.
ssgconfig).ssgconfig or root accounts entirely, as they are required for console access if the network or IdP is unavailable.Policy Manager uses the Internal Identity Provider by default, but can be configured for LDAP/Okta:
The Portal supports various authentication schemes, including LDAP and OAuth2/OpenID Connect (Okta).