cancel
Showing results for 
Search instead for 
Did you mean: 

SBOP 4.2 SP5 - SAML 2.0 Auth. for BOE on Tomcat

suszko_kamil
Explorer
0 Kudos

Hi,

we want to enable SAML 2.0 Authentication for BOE 4.2 SP5 on Tomcat.
We will use PingFederate as IdentityProvider and SAML 2.0 should be secondary protocol (Windows AD will be first) for SSO.
How should I proceed? Reverse proxy is used.

Should I install new Tomcat instance or can I modify my Tomcat with separate connections on different ports, and different config for the different connections.

Regards,

K.

Accepted Solutions (0)

Answers (2)

Answers (2)

suszko_kamil
Explorer
0 Kudos

Hi Daya,

so we can use Windows AD auth. and SAML SSO 2.0 in the same time?
Do we have any cofirmation of this (SAP Notes or sth) ?

Reagrds

BasicTek
Advisor
Advisor
0 Kudos

Since BI 4.1 we have been able to combine different SSO types, in your case it would be vintela, and then trustedSession or whatever method is being used for the SAML-trusted auth. KBA explaining the types below and you can find this in th BI admin guide...

https://apps.support.sap.com/sap/support/knowledge/preview/en/2041379

-Tim

DayaJha
Active Contributor
0 Kudos

Hi Kamli,

You can use existing bundle tomcat, please refer below KBA's and implement.

2621904 - SAML Authentication for BOE on Tomcat with Load Balancer / Reverse Proxy

2634421 - How to enable trace logging for BI SAML extension (log4j)

2604208 - BI Auth Troubleshooting Series: SAML Authentication on Tomcat's BOE Web Application

1795949 - Trusted Authentication with SAML Single Sign-On BI 4.x

Regarding configuration change please refer above KBA's.

I hope this will help!!!!

Regards,

Daya Jha