Using Identity Federation to access VIP Authentication Hub Admin Console
search cancel

Using Identity Federation to access VIP Authentication Hub Admin Console

book

Article ID: 259439

calendar_today

Updated On:

Products

VIP Authentication Hub

Issue/Introduction

The standard login pages of the VIP authentication hub are used by the Auth Hub Admin console.

Audit discovers that those pages do not contain standard banners and links to policies. To the best of our knowledge we can customize the logo and the name, but no way to put other texts.

Legacy requires to include warnings and policies. Without this, anyone who breaks into the site, cannot be legally prosecuted.

We need one of:

  • Ability to customize the standard login page by adding banners and links. If we can add HTML, that would be perfect.
  • Ability to login to the console via our login application. It already includes everything.

Environment

Release : 2.2 and onwards

Resolution

Attached document describes federating access to Auth Hub Admin Console via OpenID and SAML protocols.
1. Configure Auth Hub as a Relying Party/Service Provider against external IDP
2. Create Identity Provider definition in Auth Hub
       Example of OpenID provider
       Example of SAML provider
3. Update Authorization Policy with the user group representing privilege to use the Admin Console
4. Access the Admin Console and initiate federation 

Attachments

Using Identity Federation to Access Admin Console v2 (2)_1675799626350.pdf get_app