Federated Authentication Support for Multi-Tenant Configurations
search cancel

Federated Authentication Support for Multi-Tenant Configurations

book

Article ID: 215402

calendar_today

Updated On:

Products

CA Service Management - Service Desk Manager CA Service Catalog CA Service Desk Manager

Issue/Introduction

We want to achieve the following requirements:

1.  For Internal users- Use CA Service Desk integrated EEM authentication (EEM is integrated with LDAP Directory)

2.  For Third-party Users & Partners - Use SAML authentication as an identity provider

Questions regarding Federated Authentication in Multi-Tenant Environments:

1.  Is federated authentication configuration global to the xFlow instance or configurable per tenant?

2.  Are multiple Identity Providers supported simultaneously in a Multi-Tenant deployment? 

Environment

CA Service Management 17.3.x, 17.4.x and 17.5

Resolution

CA Service Desk Manager, CA Service Catalog and xFlow/ServiicePoint support SAML authentication protocol.

Please refer to the following SAML configuration documentation:

CA Service Desk Manager SAML Authentication: 

17.3 Documentation
17.4 Documentation
17.5 Documentation

CA Service Catalog SAML Authentication:

17.3 Documentation
17.4 Documentation
17.5 Documentation

xFlow/Service Point SAML Authentication:

17.3 Documentation
17.4 Documentation
17.5 Documentation

1.  Is federated authentication configuration global to the xFlow instance or configurable per tenant?

Federated authentication is configured at the GLOBAL level and NOT configurable at the tenant level

2.  Are multiple Identity Providers supported simultaneously in a Multi-Tenant deployment? 

Multiple Identity Providers are NOT supported simultaneously in a Multi-Tenant deployment

NOTE: There are NO current plans to investigate further the possibility of supporting multi identity providers within a single SDM/xFlow instance.