Online Help
SafeNet Trusted Access for Remote.it
The application template provides the ability to enable single sign-on (SSO), using Security Assertion Markup Language (SAML) protocol for users accessing the Remote.it application through SafeNet Trusted Access(STA).
The following use cases can be configured for Remote.it:
>SP-initiated SSO
>Just-in-Time (JIT) provisioning
NOTE Just-in-Time (JIT) provisioning does not give user’s immediate access to the Organization; you must still invite and assign a role to each user in Members tab of Organization within Remote.it.
Configuring SafeNet Trusted Access for Remote.it is a three-step process:
2.SafeNet Trusted Access setup
As prerequisites:
>You must have SAML activated on your Remote.it account.
>Download the Identity Provider (IdP) metadata from the SafeNet Trusted Access Console by clicking on the Download Metadata button. You will need this metadata in the steps given below.
Perform the following steps to configure SafeNet Trusted Access as your Identity Provider (IdP) in Remote.it:
1.Login to the Remote.it portal via your Account using the https://app.remote.it URL.
2.On the Remote.it portal, on the left pane, click Organization > Settings.
3.On the Settings window, under GENERAL, perform the following steps:
a.In the DOMAIN field, enter a domain name (for example, STA Domain) to be used for domain mapping and click icon to save the domain.
b.Click Instructions for the steps to validate your domain.
4.After the domain validation, on the Settings window, under SAML CONFIGURATION, perform the following steps:
a.Click Instructions to copy the values of the following fields and paste them in a text editor for future use.
–Unique Identifier (Entity ID/Audience)
–Reply URL (Assertion Consumer Service URL/ACS)
b.Under Upload your metadata file to enable SAML, click Select the SAML metadata file to search and select the Metadata that you downloaded as a prerequisite.
c.To confirm the configuration, click ENABLE.
d.To Require SAML for all organization members, turn on the toggle button.
NOTE Logout functionality is not supported while using single sign-on (SSO).
After completing the first step of configuring SafeNet Trusted Access in Remote.it, the second step is to activate the Remote.it application in SafeNet Trusted Access by performing the following steps:
1.In the Applications pane, the Remote.it application you added earlier is in the inactive state by default. To configure and activate this application, click the application (for example, Remote.it) and proceed to the next step.
2.Under STA Setup, perform the following steps:
a.In the ENTITY ID field, enter Unique Identifier (Entity ID/Audience) of Remote.it that you copied in step 4(a) of Remote.it setup.
b.In the ASSERTION CONSUMER SERVICE URL field, enter the Reply URL (Assertion Consumer Service URL/ACS) of Remote.it that you copied in step 4(a) of Remote.it setup.
c.Under User Login ID Mapping, in the NAME ID field, ensure that Email address is selected.
d.Under User Portal Settings, in the SERVICE LOGIN URL field, enter the Remote.it login URL (for example, https://app.remote.it/).
e.Click Save to save the details .
NOTE In the RESPONSE SIGNING field, it is recommended to use Sign Assertion And Response, No Signature option is not supported.
3.On the Assign tab, under Assign to Users, select an assignment option (for example, All users) as per your preferred configuration, and click Save to activate the Remote.it application in SafeNet Trusted Access.
Navigate to the Remote.it login URL, such as https://app.remote.it, enter your Email, and click SIGN IN.
You will be redirected to your SafeNet Trusted Access sign-in page. Enter your primary directory login information, approve the two-factor authentication, and you should be redirected to the Remote.it application after authentication.
Navigate to the User Portal URL to log in to the STA User Portal dashboard. On the dashboard, you will see a list of applications to which you have access. Click on the Remote.it application icon and you should be redirected to Remote.it login page. Enter your Email & click SIGN IN. You should be successfully logged in to the Remote.it application.
Copyright © 2023 Thales Group
All Rights Reserved.