Example: Integrate with a Ping IdP
Requirement
Organizations that use Ping Single Sign-On solution to leverage federated authentication require Bravura Security Fabric to authenticate with their current IdP solution.
Solution
Bravura Security Fabric can be configured to operate as a SAML v2 Service Provider, allowing it to integrate with a Ping Single Sign-On Identity Provider (IdP) to authenticate its users. Once authenticated at the IdP, or even before authenticating with the IdP, additional authentication chains may or may not be run.
Bravura Security Fabric can be configured to authenticate users directly against Ping by redirecting them to the Ping Sign-In page. When this method is used, the authentication requirements for the authenticating application are configured within Ping.
Prepare Bravura Security Fabric as a service provider
Install Scenario.hid_authchain_saml_sp component to prepare Bravura Security Fabric as an SP.
Prepare Ping
To configure Ping to allow integration with Bravura Security Fabric :
Log into the Ping administrative console as a system administrator.
Navigate to Server Configuration > Server Settings > Roles & Protocols and ensure Ping has been established as an identity provider.
If required, navigate to Server Configuration > Password Credential Validators and click Create new Instance to create a new credential validator.
Ensure that this credential validator contains account information that corresponds to user profiles in Bravura Security Fabric .
Configure the mapping relationship that will be used to compare Bravura Security Fabric accounts to those stored on Ping.
Navigate to IdP Configuration > Application Integration > Adapters and click Create new instance.
Follow the on-screen instructions to configure the adapter for Bravura Security Fabric.
Navigate to IdP Configuration and click Create a connection.
Follow the on-screen instructions of the SP connection wizard to configure the connection to Bravura Security Fabric .
Export the IdP meta-data for this application and save the file in a location where it can be accessed by Bravura Security Fabric in order to finish configuring the authentication chain module.
Next: