The Junos Pulse Secure Access Service (SSL VPN) 7.2 offers support for Security Assertion Markup Language (SAML) 2.0 that allows enterprises to easily and securely federate user identity with third-party Web applications, including cloud-based Software-as-a-Service (SaaS) applications.
As Enterprises push more and more services once hosted in the internal network to the Cloud, it becomes all the more important to make sure that users are authenticated on these Service Providers as well. Using this feature, you can extend your existing SA solution to provide Authentication and Authorisation for such resources as well.
Here, the users may directly access the Service Provider portal and transparently get redirected to the SA. The SA would perform the Authentication as per the policies configured and redirect the user to the Service Provider with a valid Assertion.
Please drop in any questions you may have on this exciting new feature. As always, we promise to do our best in getting them answered :-)
(Go back to SA 7.2 Features at a Glance - Discuss with Juniper Engineers)
I'm very interested in this. Is there a KB discribing a sample config for a SAML session?
Thank you for your update and glad to know that you are interested in the feature.
We currently donot have a KB explaining a samlple config as we figured the details would be too much to fit into a KB. We are working on a "How To" doc explaining the various configuration knobs provided on the SA for this feature.
Please take a look at the Junos Pulse Secure Access Service Release 7.2 documentation that covers our support for SAML 2.0:
We encourage you to provide feedback, comments, and suggestions so that we can improve the documentation. You can send your comments to [email protected], or fill out the documentation feedback form._
Thank you.
when using the IVE as an ientity provider only, does it count against your councurrent user logins?