Configure IDP SAML authentication for the Endpoint Defense console

You can configure a new IDP SAML authenticator for users to authenticate with the Endpoint Defense console. Users can use their IDP credentials to access the console from the sign-in page or use IDP-initiated SSO to access the console from the IDP user portal.

  1. In the IDP environment, create a new SAML application.
  2. Configure the IDP to communicate with Aurora Endpoint Security.
  3. In the Endpoint Defense console, Add an authenticator.
  4. Create an authentication policy that uses the password and the authenticator that you created.
    Note: As a failsafe, create one authentication policy that only uses the Endpoint Defense console password and assign it to one administrator.
  5. In the IDP environment, update the SSO Callback URL that you generated in the Endpoint Defense console.
  6. Sign in to the console from the main sign in screen and test the external IDP sign in credentials policy
  7. Optional: Click Settings > Application, and then clear the Custom Authentication checkbox to disable it.