Broadcom is implementing security features that will require all Broadcom cloud products to authenticate using Broadcom's SSO login with Okta as the IDP.
Customer's can federate their SAML based IDP into Broadcom's okta login insuring that only one set of credentials is required for all of the following products.
Methods to Federate your IDP with the Broadcom Login:
The BCP (Broadcom Cloud Portal) The Identity Provider can be added in order to federate the Broadcom login.
See the Identity Providers Page BCP Technote.
CMP users can be created automatically during the first Broadcom login attempt for CloudSOC. CMP Admins are created using the CMP Portal.
Support Can Manually Federate when Necessary
Okta Attribute Name | IDP Attribute Name |
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/emailaddress | |
FirstName | http://schemas.xmlsoap.org/ws/2005/05/identity/claims/givenname |
LastName | http://schemas.xmlsoap.org/ws/2005/05/identity/claims/surname |
Groups | http://schemas.microsoft.com/ws/2008/06/identity/claims/groups |
UserId | http://schemas.microsoft.com/identity/claims/objectidentifier |
Other Options to federate:
If you have access to the ICDm Portal, you can configure federation without support interaction. See Configure federated SSO with Broadcom Okta for multiple services.
Note:
CASB tenants are being migrated now that 3.161 has been released. Specific dates are not given. The users of migrated tenants will notice an additional prompt to consent to sharing their name and user profile (email address) with Broadcom. Nothing else changes at this stage, the back button on the login page is still present and the traditional Native SSO still works form CloudSOC authentication.
At a future undetermined date the back button will be removed and the traditional CASB SSO login will be discontinued. We encourage customers to start using Broadcom Login at their earliest convenience to begin taking advantage of its benefits.
Example Azure SSO configuration to federate the Broadcom Login: Configure CASB with Azure SSO for Broadcom OIDC SSO Federation