Allow VU to facilitate SAML single sign-on access to the Trend Vision One platform.
Procedure
- Download the service provider metadata file from the Trend Vision One
console.
-
For legacy accounts, go toand click Download.
-
For accounts with the Foundation Services release, go toand click Download the metadata XML.
-
- Add Trend Vision One as an
Authentication Management app in the VU
console.
- Go to Authentication Management in the VU console and select .
- Click Add.The Edit window appears.
- Configure the following application settings:SettingDescriptionToken Endpoint Auth MethodSelect client_secret_post.Response Type "Code"Enable this setting for both SAML and OIDC integration.Response Type "Id Token"Enable this setting for both SAML and OIDC integration.SAML2 EnabledEnable this setting for SAML integration.User authentication flowSelect from the following authentication types:
-
Single-factor authentication
-
Multi-factor authentication
Session timeUse the default value of 86,400 seconds.SAML2 Metadata FileUpload the service provider metadata file downloaded from the Trend Vision One console.Default domainUse the default value provided by VU.Note
The value defaults to the associated email address. If no email address exists, the value defaults to the username and the default email domain.Application URLEnter the initial URL of Trend Vision One, using the following format:http://[domain]/
Redirect URLUse the default URL generated by VU.Post Logout Redirect UrlEnter the URL that is redirected to after signing out of Trend Vision One, using the following format:http://[domain]/
App logoUpload a logo to display in the Application list on the Authentication Management screen.Application nameEnter a name to display in the Application list on the Authentication Management screen.ApplicationEnter an internal name to identify the app.Note
This field only supports letters, numbers, hyphens, and underscores. Do not use spaces or other special characters. -
- Click Save.
- Download the identity provider metadata file from Authentication Management in the VU console.
- In the Trend Vision One
console, add VU as an identity provider.
-
For legacy accounts, go to.Click Upload the IdP metadata XML file.
-
For accounts with the Foundation Services release, go to.Click Add Identity Provider.Specify a name and description.Upload the identity provider metadata file obtained from VU.Click Save.
For more information, see Single Sign-On or Identity Providers (Foundation Services release). -
- (Optional) Go to and add SAML user accounts.Sign-in attempts from SAML users begin redirecting to VU, where users can enter the account username, password, and a VU Mobile Token to access Trend Vision One.