Single-Sign-On SSO
search cancel

Single-Sign-On SSO

book

Article ID: 245632

calendar_today

Updated On:

Products

AppNeta

Issue/Introduction

How do we setup and integrate SSO with the Appneta SaaS portal ?

Resolution

In order to facilitate SSO setup with Broadcom's SSO facilitator (Okta), we require that the customer provide us with the following to initiate the process:

  1. Please provide the following:
    1. Keyword. A keyword to use for the customers new federated endpoint url, which will take the form <keyword>.pm.appneta.com.
    2. Customer Metadata. A SAML metadata file generated by the customer's identity provider (IdP).
    3. Organization. The customer's organizations that should use single sign-on (customers at times have more than one org within the SaaS portal).

     2. Ask the customer to map the correct attributes from the corporate directory to properties in SAML assertions that AppNeta Performance Manager expects.
              “Email” : The attribute value must correspond to user email address.
              “Groups” : The attribute value must correspond to one or more named collection of users, each of which will eventually be mapped to an APM role.
              "FirstName"
              "LastName"

For more information, please have a look at the SSO page for AppNeta:

https://techdocs.broadcom.com/us/en/ca-enterprise-software/it-operations-management/appneta/GA/appneta-overview/system-administration/single-sign-on.html

Additional Information

After SSO services are enabled, If you are having problems logging in and encountering errors, you may need to open a Support Ticket to help investigate the cause.  Missing the correct mapped values from step 2 is a common problem.

To help further investigate, you may want to use a SAML Trace browser add-on / extension which can be valuable in confirming the attributes that are being sent.