Configuring SAML authentication in IdP
Admin user can manage SAML configurations from Netezza UI. IdP Metadata URL and EntityId are required to setup SAML on Netezza UI. Update ACS url and SLO endpoint on IdP. Select
the Signed Authentication checkbox only if it is already enabled in the IdP application portal.
The following SAML configuration steps are generic. Users can follow similar steps on respective IdP.
It is mandatory to configure SessionNotOnOrAfter.
How to get IdP Metadata URL and EntityId
- Login to the IdP Portal.
- Navigate to your
SAMLapplication. - In the application details, you can find
IdP Metadata URLandEntityId.
Configure IdP details
- Login to Netezza UI as a user who is part of the administrative group.
- Select
Settingstopic from the left pane. - Enable
SAMLconfiguration. - Add
IdP Metadata URLandEntityIdfrom step 3.
Configure ACS url and SLO endpoint on IdP
-
Login to Netezza UI as a user who is part of the administrative group.
-
Select
Settingstopic from the left pane. -
Copy the
ACS urlandSLO endpointfrom theIdP configurationpage. -
Login to the
IdPPortal. -
Navigate to your
SAMLapplication. -
Edit the application configuration and add the ACS url and SLO endpoint from step 3.
Configuring Signed Authentication on IdP
-
Login to the IdP Portal.
-
Navigate to your
SAMLapplication. -
Select respective checkbox to enable signed authentication.
-
Click
Download Certificatebutton in the Netezza UI underIdP configuration -> SAML.An user with admin privileges can only download the authentication certificate.
-
Upload this certificate to
IdPportal for signed authentication configuration.