<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cloudpath Integration with PingIdentity for SAML authentication in RUCKUS Self-Help</title>
    <link>https://community.ruckuswireless.com/t5/RUCKUS-Self-Help/Cloudpath-Integration-with-PingIdentity-for-SAML-authentication/m-p/80344#M362</link>
    <description>&lt;P&gt;In this article, we will explain how to integrate Cloudpath with PingIdentity as the Identity Provider (IdP) for SAML Authentication.&lt;/P&gt;&lt;P&gt;1. Create the Workflow on Cloudpath and add the required Plug-Ins except the SAML authentication plug-in. We will add this plug-in after the configuration on PingIdentity (IdP) side and will publish it.&lt;/P&gt;&lt;P&gt;2. Copy the Workflow URL (Enrollment portal URL) from Advanced tab and keep it handy for use in later steps.&lt;/P&gt;&lt;P&gt;3. Go to PingIdentity Portal. Select Applications &amp;gt; Click on + sign to create a new SAML application for Cloudpath.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_0-1716848169980.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11638iE6C6822B9DF37593/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_0-1716848169980.png" alt="Dilshad_Zafar_0-1716848169980.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;4. Enter the name of the Application, add description and choose SAML as the Application type and hit Save button.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_1-1716848549883.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11639i9B1C54135DB9EACC/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_1-1716848549883.png" alt="Dilshad_Zafar_1-1716848549883.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;5. At this point, it will give us three options for SAML Configuration. Use "Manually Enter" option to enter the ACS URL and the Entity ID of the Service Provider (SP) which in our case is the Cloudpath server. ACS URL and SP Entity Id configuration is given in the next step.&lt;/P&gt;&lt;P&gt;6. In the ACS URL option, paste the Workflow URL we copied in Step 2 and append it with&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;/samlAssertionConsumer&lt;/EM&gt;&lt;/STRONG&gt;&amp;nbsp;as shown in the following screenshot :-&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_2-1716849235043.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11640i74FD9B5052B8282F/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_2-1716849235043.png" alt="Dilshad_Zafar_2-1716849235043.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;6. In the Entity Id option, enter the Cloudpath URL followed by &lt;STRONG&gt;&lt;EM&gt;/sp&amp;nbsp;&lt;/EM&gt;&lt;/STRONG&gt;as shown in the screenshot below and hit Save.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_3-1716849693059.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11641i4E913963E26FB696/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_3-1716849693059.png" alt="Dilshad_Zafar_3-1716849693059.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;7. Next, Go to the Configuration tab of the SAML app and download the metadata. This will be used in Configuring the SAML based plug-in on Cloudpath Workflow.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_4-1716850151507.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11642iB57A4EF9CE626997/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_4-1716850151507.png" alt="Dilshad_Zafar_4-1716850151507.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;8.&amp;nbsp;Now go to Cloudpath and edit the Workflow you created and add a plug-in “Authenticate to a Traditional authentication server” and choose SAML.&lt;/P&gt;&lt;P&gt;9.&amp;nbsp;Choose the IdP metadata type as XML and copy the metadata into the IdP metadata XML option.&lt;/P&gt;&lt;P&gt;10.&amp;nbsp;Next comes the IdP Entity-Id. For this, go back to PingIdentity, under the Configuration tab where we had downloaded the metadata, we can see the “Issuer Id”. This is our IdP Entity-Id that needs to be entered in the Cloudpath IdP Entity-Id option :-&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_1-1716853091040.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11651iB7F4EA27E83D0991/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_1-1716853091040.png" alt="Dilshad_Zafar_1-1716853091040.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_0-1716853040550.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11650i4916B5A02051A751/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_0-1716853040550.png" alt="Dilshad_Zafar_0-1716853040550.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;11. In the SP Entity ID option, enter the same URL as in Step 6.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;12. Scroll down to SAML options and select "Exact" in the AuthN Context Comparison. This may change based on your requirement.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_2-1716853188415.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11652iA676E559F67610F6/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_2-1716853188415.png" alt="Dilshad_Zafar_2-1716853188415.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;13. Leave all other settings as default unless you want to customize the configuration based on your requirement and publish the Workflow and test it. Following is a screenshot of the Enrollment details tab showing user successfully completed the SAML authentication of the workflow :-&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_3-1716853221624.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11653i6BBEA3B14859638A/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_3-1716853221624.png" alt="Dilshad_Zafar_3-1716853221624.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;</description>
    <pubDate>Mon, 27 May 2024 23:41:15 GMT</pubDate>
    <dc:creator>Dilshad_Zafar</dc:creator>
    <dc:date>2024-05-27T23:41:15Z</dc:date>
    <item>
      <title>Cloudpath Integration with PingIdentity for SAML authentication</title>
      <link>https://community.ruckuswireless.com/t5/RUCKUS-Self-Help/Cloudpath-Integration-with-PingIdentity-for-SAML-authentication/m-p/80344#M362</link>
      <description>&lt;P&gt;In this article, we will explain how to integrate Cloudpath with PingIdentity as the Identity Provider (IdP) for SAML Authentication.&lt;/P&gt;&lt;P&gt;1. Create the Workflow on Cloudpath and add the required Plug-Ins except the SAML authentication plug-in. We will add this plug-in after the configuration on PingIdentity (IdP) side and will publish it.&lt;/P&gt;&lt;P&gt;2. Copy the Workflow URL (Enrollment portal URL) from Advanced tab and keep it handy for use in later steps.&lt;/P&gt;&lt;P&gt;3. Go to PingIdentity Portal. Select Applications &amp;gt; Click on + sign to create a new SAML application for Cloudpath.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_0-1716848169980.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11638iE6C6822B9DF37593/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_0-1716848169980.png" alt="Dilshad_Zafar_0-1716848169980.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;4. Enter the name of the Application, add description and choose SAML as the Application type and hit Save button.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_1-1716848549883.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11639i9B1C54135DB9EACC/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_1-1716848549883.png" alt="Dilshad_Zafar_1-1716848549883.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;5. At this point, it will give us three options for SAML Configuration. Use "Manually Enter" option to enter the ACS URL and the Entity ID of the Service Provider (SP) which in our case is the Cloudpath server. ACS URL and SP Entity Id configuration is given in the next step.&lt;/P&gt;&lt;P&gt;6. In the ACS URL option, paste the Workflow URL we copied in Step 2 and append it with&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;/samlAssertionConsumer&lt;/EM&gt;&lt;/STRONG&gt;&amp;nbsp;as shown in the following screenshot :-&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_2-1716849235043.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11640i74FD9B5052B8282F/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_2-1716849235043.png" alt="Dilshad_Zafar_2-1716849235043.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;6. In the Entity Id option, enter the Cloudpath URL followed by &lt;STRONG&gt;&lt;EM&gt;/sp&amp;nbsp;&lt;/EM&gt;&lt;/STRONG&gt;as shown in the screenshot below and hit Save.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_3-1716849693059.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11641i4E913963E26FB696/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_3-1716849693059.png" alt="Dilshad_Zafar_3-1716849693059.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;7. Next, Go to the Configuration tab of the SAML app and download the metadata. This will be used in Configuring the SAML based plug-in on Cloudpath Workflow.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_4-1716850151507.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11642iB57A4EF9CE626997/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_4-1716850151507.png" alt="Dilshad_Zafar_4-1716850151507.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;8.&amp;nbsp;Now go to Cloudpath and edit the Workflow you created and add a plug-in “Authenticate to a Traditional authentication server” and choose SAML.&lt;/P&gt;&lt;P&gt;9.&amp;nbsp;Choose the IdP metadata type as XML and copy the metadata into the IdP metadata XML option.&lt;/P&gt;&lt;P&gt;10.&amp;nbsp;Next comes the IdP Entity-Id. For this, go back to PingIdentity, under the Configuration tab where we had downloaded the metadata, we can see the “Issuer Id”. This is our IdP Entity-Id that needs to be entered in the Cloudpath IdP Entity-Id option :-&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_1-1716853091040.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11651iB7F4EA27E83D0991/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_1-1716853091040.png" alt="Dilshad_Zafar_1-1716853091040.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_0-1716853040550.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11650i4916B5A02051A751/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_0-1716853040550.png" alt="Dilshad_Zafar_0-1716853040550.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;11. In the SP Entity ID option, enter the same URL as in Step 6.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;12. Scroll down to SAML options and select "Exact" in the AuthN Context Comparison. This may change based on your requirement.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_2-1716853188415.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11652iA676E559F67610F6/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_2-1716853188415.png" alt="Dilshad_Zafar_2-1716853188415.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;13. Leave all other settings as default unless you want to customize the configuration based on your requirement and publish the Workflow and test it. Following is a screenshot of the Enrollment details tab showing user successfully completed the SAML authentication of the workflow :-&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Dilshad_Zafar_3-1716853221624.png" style="width: 999px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11653i6BBEA3B14859638A/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Dilshad_Zafar_3-1716853221624.png" alt="Dilshad_Zafar_3-1716853221624.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Mon, 27 May 2024 23:41:15 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/RUCKUS-Self-Help/Cloudpath-Integration-with-PingIdentity-for-SAML-authentication/m-p/80344#M362</guid>
      <dc:creator>Dilshad_Zafar</dc:creator>
      <dc:date>2024-05-27T23:41:15Z</dc:date>
    </item>
  </channel>
</rss>

