Cloud Edge Secure Access Getting Started Guide
- Cloud Edge Secure Access
- Welcome to SonicWall Cloud Edge!
- Prerequisites
- Installation
- Networks
- Groups and Members
- Securing the Platform
- Monitoring
- Compliance
- SonicWall Support
OneLogin
This article describes how to configure OneLogin for use as an identity provider for SonicWall.
- Configuring OneLogin
- Configuring SonicWall
- Access Error troubleshooting
Please follow the steps below:
Configuring OneLogin
- Log in to your OneLogin account. If you don't already have one, you will need to create one.
-
Select Apps and then Add Apps.
-
Search for saml, and select SAML Test Connector (IdP w/attr).
-
Change the Display Name to Connector. Select Save.
- Go to the SSO tab, and copy the values for SAML 2.0 Endpoint (HTTP) and SLO Endpoint (HTTP).
-
Select the View Details link at the X.509 Certificate field.
-
Download the X.509 certificate onelogin.pem.
- Go back to the Configuration tab.
-
Enter the following values into the appropriate fields:
-
Audience: urn:auth0:sonicwall-production:tenantname-oc
- Recipient:https://auth.sonicwalledge.com/login/callback?connection=tenantname-oc
- ACS (Consumer) URL:https://auth.sonicwalledge.com/login/callback?connection=tenantname-oc
- ACS (Consumer) URL Validator field: https://auth.sonicwalledge.com/login/callback?connection=tenantname-oc
-
-
On the Parameters tab, select Add Parameter.
- In the popup, set a name for your new custom attribute using the Field name text box. Make sure you check the Include in the SAML assertion flag. Select Save.
- The new attribute you created is displayed. Select the Value field, which is currently displaying - No default.
- Select the Value dropdown menu and select Macro.
-
Add the following set of properties:
- Field Name: email, Macro text box value: {email}, SAML assertion flag: Checked
- Field Name: given_name, Macro text box value: {firstname}, SAML assertion flag: Checked
- Field Name: family_name, Macro text box value: {lastname}, SAML assertion flag: Checked
At this point, we're ready to configure SonicWall.
Configuring SonicWall
-
Log in to your Management Platform, and navigate to Settings and then Identity Providers.
- Select + Add Provider.
- Choose Okta Identity Cloud (Okta connection will work for OneLogin).
-
Fill Sign In URL, Signing Certificate as follows:
- The SAML 2.0 Endpoint (HTTP) value you saved above into the Sign In URL field
- The SLO Endpoint (HTTP) value into the Sign Out URL field.
-
Finally, upload the onelogin.pem certificate using Upload Certificate.
- Select Done.
Access Error troubleshooting
If your users are getting access error after the configuration, please check these steps.
Was This Article Helpful?
Help us to improve our support portal