Configuring SAML-Based SSO with Amplify

RapidIdentity Platform Documentation

Solution
Application
Content Type
Technical Documentation
Utilities & Services
ft:locale
en-US

Amplify supports a SAML-based single sign-on (SSO) service for its web-based application that you can configure in your RapidIdentity portal. These configuration settings are an example and may vary for individual configurations.

Requirements
  • Amplify administrator credentials
  • Access to your RapidIdentity administrator portal
  1. Navigate to your RapidIdentity administrator portal.
  2. From the module selector, choose Configuration.
  3. Select Security > Identity Providers > Federation Partners.
  4. Click Add Federation Partner > SAML 2.0, then click Create SAML Relying Party.
  5. In the General section, add a name and the metadata from your Amplify administrator portal.
  6. In the SSO Settings section, configure the following settings:
    1. Enable the Include SAML2 Attribute Statement setting.
    2. Sign SAML2 SSO Response: Conditional
    3. Sign SAML2 SSO Assertions: Never
    4. Encrypt SAML2 SSO Assertions: Never
    5. Encrypt SAML2 SSO Name IDs: Never
    6. Skip Endpoint Validation: Selected
  7. In the Attribute Mapping section, click Add New Attribute + and set the following options:
    1. Select New Attribute Type: Name ID
    2. LDAP Attribute: mail
    3. Name Format Friendly Name: Email Address
  8. Click Create, then click Save.

RapidIdentity and Amplify are now integrated, allowing users to authenticate to Amplify with their RapidIdentity credentials.