Configuring SAML-Based SSO with Character Strong

RapidIdentity Platform Documentation

Solution
Application
Content Type
Technical Documentation
Utilities & Services
ft:locale
en-US

Character Strong supports a SAML-based single sign-on (SSO) service for its web-based application that you can configure in your RapidIdentity portal. These configuration settings are an example and may vary for individual configurations.

Requirements
  • Character Strong administrator credentials
  • Access to your RapidIdentity administrator portal
  1. Navigate to your RapidIdentity administrator portal.
  2. From the module selector, choose Configuration.
  3. Select Security > Identity Providers > Federation Partners.
  4. Click Add Federation Partner > SAML 2.0, then click Create SAML Relying Party.
  5. In the General section, add a name and the metadata from your Character Strong administrator portal.
  6. In the SSO Settings section, configure the following settings:
    1. Sign Assertions: Always
    2. Sign Response: Never
    3. Encrypt Assertion: Never
    4. Encrypt Response: Never
    5. Signature Algorithm: SHA-1
  7. In the Attribute Mapping section, click Add New Attribute + and configure the following attributes:
    LDAPSAMLFriendly NameName Format Value
    mailemailaddressCharacterStrong Email Addressurn:oasis:names:tc:SAML:2.0:attrname-format:basic
    givenNamegivenNameCharacterStrong GivenNameurn:oasis:names:tc:SAML:2.0:attrname-format:basic
    idautoPersonDeptDescrorganizationCharacterStrong Organizationurn:oasis:names:tc:SAML:2.0:attrname-format:basic
    snsurnameCharacterStrong Surnameurn:oasis:names:tc:SAML:2.0:attrname-format:basic
    (STATIC)roleCharacterStrong Role (STATIC)urn:oasis:names:tc:SAML:2.0:attrname-format:basic
    mailurn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress
  8. Click Create, then click Save.

RapidIdentity and Character Strong are now integrated, allowing users to authenticate to Character Strong with their RapidIdentity credentials.