Configuring a SAML identity provider connection on Navigator

You can configure a SAML identity provider to manage and automatically register both internal users and users that you designate for external sharing of items.

About this task

The Content operator does not support SAML based authentication for the following operator deployment types:
  • a deployment that uses the OpenShift® console.
  • a deployment that uses the deployoperator.py script.
You can manually configure the Content operator to use a SAML identity provider connection for the Navigator component in your Content Cortex container deployment.

Procedure

  1. In the Content Cortex CR file, specify an SSO image for the Content Cortex and ICN components within the ecm_configuration section.
    By default, the Content operator uses non-SSO images for all deployments where OIDC is disabled. You need to override the default behavior of the operator and specify an SSO image that can be used with a SAML setup. For more information, see the technote Using SSO images for IBM Content Navigator and Content Platform Engine when an Identify Provider is not defined in the CR. External link opens a new window or tab
  2. Configure a SAML identity provider configuration for the navigator component in your Content Cortex container.