IBM Support

New Workflow for SAML Setup In MaaS360 With IBM Security Verify

How To


Summary

As of January 2022, new MaaS360 customers are presented with a new SAML integration experience. This new experience includes provisioning an IBM Security Verify tenant to provide backend services for SAML workflows. If only SAML services are leveraged, and not the broader Verify integration that is available for free to all MaaS360 clients, then the setup instructions that follow are sufficient for authentication services.

For accounts created before January 2022: Even if the admin is enabling SAML for the first time, PingOne is the SAML service provider for the time being. Migration will take place at a future date that has yet to be determined.

Steps

Before beginning the integration, make sure that the admin configuring the setup has access to an IBM ID.  More information can be found at myibm.ibm.com

Navigate to Setup-->Settings.  Beneath the Directory and Enrollment tab, select Directory and Authentication.
Photo of Directory and Enrollment Settings
Select Add Authentication Mode-->Cloud Directory-->SAML Based
Photo of SAML Cloud Setup Option
If the admin logged in does not have an associated IBM ID, a prompt to enter one is displayed.  If one does not exist, there is a link to create a new one.  Otherwise, this screen does not appear. 
Photo of IBM ID prompt for SAML setup
The admin is prompted to define the IBM Security Verify tenant hostname.  This is defined by the admin but should follow the guidelines listed in the instructions on screen. 
Hostname configuration screen
If the broader Verify services are enabled for the account at a later date, the Verify hostname is listed on the setup screen.
Photo of Identity and Access Management Setup
Provide the IDP name and metadata file (note: the hostname is listed on this page as well and can be seen again by editing the setup).  Once saved, the setup is complete.
IDP information screen shot
SAML Setup complete

Document Location

Worldwide

[{"Type":"MASTER","Line of Business":{"code":"LOB24","label":"Security Software"},"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SSYSXX","label":"IBM MaaS360"},"ARM Category":[{"code":"a8m0z000000070eAAA","label":"SETUP"}],"ARM Case Number":"","Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"All Versions"}]

Document Information

Modified date:
28 January 2022

UID

ibm16551980