By: Dmitry Tomko user 21 Oct 2019 at 7:22 a.m. CDT

2 Responses
Dmitry Tomko gravatar
I'm are trying to integrate CyberArk PAS product with Gluu(through SAML). Official documentation from CyberArk: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/10.10/en/Content/PAS%20INST/SAML-Authentication.htm?Highlight=saml I have configured Gluu based on this documentation, but for some reason it doesn't work, it gives following error: {"ErrorCode":"PASWS011E","ErrorMessage":"Missing mandatory parameter [username]."} On SAML answer i don't see username in Subject as CyberArk expects (attaching answer). How to fix that situation? xml answer: https://app.box.com/s/r7bvwzvln1qc7vz85xrdhx8kjf7b4inr gluu shibboleth config https://app.box.com/s/zbd1dhtqq0mspvy0yknqw8bperr1jitc

By Mohib Zico staff 30 Oct 2019 at 2:51 a.m. CDT

Mohib Zico gravatar
>> On SAML answer i don't see username in Subject as CyberArk expects (attaching answer). How to fix that situation? xml answer: https://app.box.com/s/r7bvwzvln1qc7vz85xrdhx8kjf7b4inr I see UID in SAML assertion. Screenshot attached. But using 'admin' as user .. SP ( CyberArk ) might not like it. >> gluu shibboleth config https://app.box.com/s/zbd1dhtqq0mspvy0yknqw8bperr1jitc This is not Gluu Server's IDP config. Your IDP configurations are inside container: /opt/shibboleth-idp/conf/

By Dmitry Tomko user 31 Oct 2019 at 6:42 a.m. CDT

Dmitry Tomko gravatar
Let's close it, i have foud root cause