beautypg.com

0 introduction, 1 scope of document, 2 prerequisites – HID Zscaler and ActivID AS using SAML User Manual

Page 3: Introduction, Scope of document, Prerequisites

background image

ActivID Appliance and Zscaler Web Security | SAML 2.0 Channel Integration Handbook

External Release | © 2012-2013 HID Global Corporation/ASSA ABLOY AB. All rights reserved.

Page | 3

1.0 Introduction

The Zscaler® Web Security solution enables organizations to embrace new cloud applications and social media
technologies, while gaining advanced protection from accidental data loss, malicious attacks, and emerging
threats. Zscaler Web Security enables organizations to securely enable business beyond the corporate network,
including such capabilities as:

• Advanced Threat Protection
• Cloud Application and Social Media Control
• Anti-Virus and Anti-Spyware
• Dynamic URL Filtering

Providing secure “one prompt” access via a web proxy over existing Internet connections requires strong, two-
factor authentication to protect and identify users.

The HID® Global Identity Assurance™ ActivID® Appliance works with Zscaler solution to provide versatile, strong
authentication that is flexible, scalable, and simple to manage.

The ActivID Appliance offers support for multiple authentication methods that are useful for diverse audiences
across a variety of service channels (SAML, RADIUS, etc.), including user name and password, mobile and PC
soft tokens, one-time passwords, and transparent Web soft tokens.

1.1

Scope of Document

This document explains how to configure ActivID Appliance and Zscaler using Security Assertion Markup
Language (SAML). SAML 2.0 enables Web-based authentication and authorization and can be used by
Zscaler to delegate user authentication to the ActivID Appliance.

Integrating ActivID Appliance capabilities with Zscaler provides multiple choices for user authentication.

This option is simple and allows users to authenticate to the ActivID Appliance IDP portal that has many
authentication mechanisms working out of the box, including one-time password (OTP), Web soft token
OTP, and Public Key Infrastructure (PKI) methods.

1.2

Prerequisites

• ActivID Appliance 7.2 (or greater) installed and configured.

• Zscaler Web Security.