SonicOS 7.2 SAML Feature Guide

Configuring the SAML Profile

In SAML Profile, the SAML IdP is associated with the SAML SP. The SAML profile acts as a container to bind the SAML IdP profile and SP profile. This allows the system to map services to their corresponding IdPs.

The SAML profile name is part of SPs entityID URL and Assertion Consumer Service (ACS) URL.

Ensure that you use the same SAML profile name that was used while exporting SP Metadata.

You can create multiple IdP-SP associations within SAML profile.

Example: An partner managing a SonicWall firewall for a client may configure their own IdP on the firewall for their management services. At the same time you can set up the client company's IdP to allow their employees to connect via SSL VPN.

To configure the SAML profile

  1. Navigate to Device > Users > Settings > SAML CONFIGURATION.

  2. Click the Configure button next to the SAML Profile.

  3. In the SAML Profile dialog box, click + Add.

    Set up the SAML Profile and associate each SonicWALL SP or service or use case such as SSL VPN login on SonicWall, to the appropriate Identity Provider (IdP).

  4. Enter the following information.

  5. In the Name field, enter the SAML Profile name that you set up in Exporting SP Metadata.

  6. In the Select IdP field, select the identity provider.

  7. In the Select SP field, select the service provider. When you select the service provider, Enable on this profile for HTTPS Management toggle becomes available.

  8. Use a certificate to sign SP request: Protects the SP connections associated with the IdP, using your own certificate.

    The certificate needs to be imported prior to configuring the SAML profile.

  9. In the Select Certificatefield, select the certificate.

  10. Enable Single Logout: Allows single logout.

  11. Enable this profile for HTTPS Management: Configures the profile for HTTPS management.

  12. Click Save.

    At the top, a success message is displayed.

    On the SAML Profile dialog box, the last entry displays the newly created SAML profile.

  13. Click Close.