SAML Support for IDP's in Tanzu Hub
search cancel

SAML Support for IDP's in Tanzu Hub

book

Article ID: 443155

calendar_today

Updated On:

Products

VMware Tanzu Platform - Hub

Issue/Introduction

Operators currently cannot configure SAML for authentication. This limitation may block platforms from migrating foundations or performing security assessments (such as CVE impact analysis) when identity provider parity is required for token exchange.

  • Unable to configure SAML as an authentication provider in the UI.
  • Token exchange between the Hub and remote foundations fails if the foundation uses SAML.
  • Users are unable to see foundation capabilities if there is an identity mismatch.

Environment

  • VMware Tanzu Platform - Hub 10.4.x
  • VMware Tanzu Platform Services Tile 10.4.x

Cause

This is a known product limitation. Tanzu engineering is currently working to add SAML authentication support to achieve parity with other Tanzu components.

Resolution

Targeted to be fixed in a future release.

Currently, the following authentication providers are supported:

  • OIDC
  • LDAP
  • Internal authentication

To be updated on the fix status, please subscribe to this article.

Additional Information