Identity provider requirements

When configuring Unified Manager to use an identity provider (IdP) to perform SAML authentication for all remote users, you need to be aware of some required configuration settings so that the connection to Unified Manager is successful.

You must enter the Unified Manager URI and metadata into the IdP server. You can copy this information from the Unified Manager SAML Authentication page. Unified Manager is considered the service provider (SP) in the Security Assertion Markup Language (SAML) standard.

Supported encryption standards

Validated identity providers

ADFS configuration requirements

Required Java software

If you are using the Third Party Oracle Java repository with Unified Manager on Windows or Red Hat Enterprise Linux, you must download and install the Java Cryptography Extension (JCE) Unlimited Strength Jurisdiction Policy Files on the Unified Manager server. These files provide for unlimited strength policy files which contain no restrictions on cryptographic strengths.

Note: No change needs to be made when using OpenJDK with Unified Manager.
  1. Download the software from http://www.oracle.com/technetwork/java/javase/downloads/jce8-download-2133166.html.
  2. Unzip the two .jar files and copy them to the following location:
    • Red Hat: $JAVA_HOME/jre/lib/security
    • Windows: %JAVA_HOME%\lib\security

Other configuration requirements