SAML Password-based Authentication

Starting in Niagara 4.14, the SAML Authentication Scheme allows the administrator to specify the type of authentication that is allowed on the Supervisor.
Prerequisites:
  • Workbench is running.
  • The Supervisor station is configured with the SAMLIDPService with CircleofTrustFolder configured.
  • Appropriate users are added in the UserService on the Supervisor station.

Perform the following steps:
  1. Open a platform connection for the remote controller and connect to the station.
  2. Expand Config > Services > AuthenticationService > Authentication Schemes, right-click SAMLAuthenticationScheme and click Views > Property Sheet.
    The Property Sheet opens.
    Image
  3. In the Requested Authentication Type property, click the Image icon.
    The Select Enums pane opens.
    Image
  4. Select the PasswordProtectedTransport type of authentication and click OK.
  5. Open the supervisor station using a web browser.
  6. In the Login window, enter or verify Username and click Log In with SSO.
    Image
    Image
  7. Enter your password and click Login.
    If the credentials are correct, login is successful and a station view displays.
    Image
     NOTE: If successful, you can logout, if desired. 

    You can change the authentication type as needed. When the authentication type is modified, log in with the appropriate user (for example, if the Time Sync Token authentication type is selected, the user should use the Google Authentication scheme).