In SAML Profile, the SAML IdP is associated with the SAML SP. The SAML profile acts as a container to bind the SAML IdP profile and SP profile. This allows the system to map services to their corresponding IdPs.
The SAML profile name is part of SPs entityID URL and Assertion Consumer Service (ACS) URL.
Ensure that you use the same SAML profile name that was used while exporting SP Metadata.
You can create multiple IdP-SP associations within SAML profile.
Example: A partner managing a SonicWall firewall for a client may configure their own IdP on the firewall for their management services. At the same time you can set up the client company's IdP to allow their employees to connect via SSL VPN.
You can configure the SAML profile in either of the following ways:
To configure the SAML profile using the Configure button
Navigate to Device > Users > Settings > SAML Configuration.
Click the Configure button next to the SAML Profile.
In the SAML Profile dialog box, click + Add.
Set up the SAML Profile and associate each SonicWALL SP or service or use case such as SSL VPN login on SonicWall, to the appropriate Identity Provider (IdP).
Enter the following information.
In the Name field, enter the SAML Profile name that you set up in Exporting SP Metadata.
In the Select IdP field, select the identity provider.
In the Select SP field, select the service provider.
Use a certificate to sign SP request: Protects the SP connections associated with the IdP, using your own certificate.
The certificate needs to be imported prior to configuring the SAML profile.
In the Select Certificate field, select the certificate.
Enable Single Logout: When enabled, logging out from one SAML-integrated service ends the user’s session across all linked services.
Enable this profile for HTTPS Management: Configures the profile for HTTPS management.
This option becomes available only when you select the SP that is configured for HTTPS management.
Enable on this profile for SSL VPN: Configures the profile for SSL VPN.
This option becomes available only when you select the SP that is configured for SSL VPN.
Click Save.
At the top, a success message is displayed.
In the SAML Profile dialog box, the last entry displays the newly created SAML profile.
Click Close.