Update existing SAML 2.0 integration

Perform these steps to update your existing SAML 2.0 integration.

Before you begin

Role required: admin

About this task

Request the SAML 2.0 Update 1 Plugin

Contact customer support to request the SAML 2.0 Single Sign-On - Update 1: security enhancements plugin. The plugin applies updated versions of the SAML2SingleSignon installation exit (login script), SAML2Logout installation exit (logout script), and SAML2 script include (script object). See Activate a plugin.

Merge Customizations from Existing Installation Exit Scripts into New Scripts

The update saves an inactive copy of the integration's original installation exit scripts. You can use these copies to merge any customizations you made to the login and logout scripts to the new versions of these installation exits.
Table 1. Merge Customizations from Existing Installation Exit Scripts into New Scripts
Original Installation Exit Script Name Original Script Status New Installation Exit Script Name New Script Status
SAML2SingleSignon Inactive SAML2SingleSignon_update1 Active
SAML2 Inactive SAML2_update1 Active
SAML2Logout Inactive SAML2Logout_update1 Active
You can navigate to the SAML 2.0 login and logout installation exit scripts using these paths.
  • SAML 2 Single Sign-on > Login script.
  • SAML 2 Single Sign-on > Logout script.
  • System Definition > Installation Exits.
You can navigate to the SAML 2.0 update 1 script include using these paths.
  • SAML 2 Single Sign-on > Script object.
  • System Definition > Script Includes.

Test the Update

Perform these steps to troubleshoot your integration update.

Procedure

  1. Add a new system property called glide.authenticate.sso.saml2.debug with a value of true.
  2. Attempt SAML 2.0 login.
  3. Review the system log. SAML2 validation errors begin with the text SAML2ValidationError.
  4. Identify and fix any common login errors.