CA Service Management

 View Only
  • 1.  SAML2 with AA setup

    Posted Sep 16, 2019 03:53 AM
    Hi Team.
    We need to setup SSO with SAML2 in a SDM AA configuration.
    I would like to have some advices, how to go into the right direction.

    Some background:
    F5 load balancer , sticky session configuration .
    6 app servers, running director and 3-4 web engines each.
    Having Apache as main web server.
    webengine url's are configured using LBhost, rather than app server FQDN.
    BG and SB are in a separate secured lan network.

    As SAML2 is completely handled upfront by shibboleth, I am unsure about configuration
    Regarding, entity Id and redirect url.
    Do I need to setup 8 separate service providers in the IDP or can I share the same entity ID and let the IDP redirect to the LB?

    Any suggestion and expirience is welcome
    Thanks in advance
    .....Michael

    ------------------------------
    Principal Services Consultant
    HCL Enterprise Studio
    ------------------------------


  • 2.  RE: SAML2 with AA setup

    Posted Sep 19, 2019 03:03 PM
    Has anyone any advice, thought or comment on this?
    Thanks
    ....Michael

    ------------------------------
    Principal Services Consultant
    HCL Enterprise Studio
    ------------------------------



  • 3.  RE: SAML2 with AA setup
    Best Answer

    Broadcom Employee
    Posted Sep 22, 2019 11:43 PM
    Hi Michael,

    I'll reach out to you offline to see if I can add anything.


    If anyone else has comments, please chip in. Thanks!

    Kyle_R.