Enabling SAML Authentication with NetScaler for Web Applications

Enabling SAML Authentication with NetScaler for Web Applications

Certificates

Certificates

NetScaler requires an identity provider certificate, a server certificate, and a service provider certificate. Each of these certificates is used to certify the element whose profile it represents.
Create each of these certificates:
Service provider (SP) certificate
The service provider signing certificate uses a private key that resides on the service provider, while NetScaler holds the public key.
In this case, Informatica is the service provider.
Identify provider (IDP) certificate
The identity provider certificate is used to sign the assertions within the SAML tokens that NetScaler issues to Informatica web applications.
Server certificate
The server certificate is bound to the authentication, authorization and auditing (AAA) server.
The same certificate file can serve as both the identity provider certificate and the server certificate. This certificate should be a "wildcard" certificate that permits access to the entire domain where NetScaler, the AAA server, and the LDAP server are installed.
Choose how to create this certificate:
  • In NetScaler, create a self-signed certificate.
  • Separately create a certificate signed by a public or private certificate authority.

0 COMMENTS

We’d like to hear from you!