Yardi Voyager-7S-RSA SecurID Access

Download as pdf or txt
Download as pdf or txt
You are on page 1of 8

<Partner Name>

<Partner Product>

RSA SECURID® ACCESS


Implementation Guide

Yardi Voyager 7S

Gina Salvalzo, RSA Partner Engineering


Last Modified: August 3, 2018
Yardi Voyager 7S

Solution Summary
Yardi Voyager 7S is a leading commercial real estate research and data platform, tailored specifically to
address the needs of the commercial market industry. This integration supports single sign on for both
SAML SP initiated and IDP initiated work flows. JIT provisioning is not supported.

RSA SecurID Access Features


Yardi Voyager 7S

On Premise Methods
RSA SecurID ✔
On Demand Authentication ✔
Risk-Based Authentication (AM) -
Cloud Authentication Service Methods
Authenticate App ✔
FIDO Token ✔
SSO
SAML SSO ✔
HFED SSO -

Identity Assurance

Collect Device Assurance and User Behavior ✔

-- 2 -
Yardi Voyager 7S

Configuration Summary
The following supported use case of RSA SecurID Access with Yardi Voyager 7S require both server-side
and client-side configuration changes. This section of the guide includes links to the appropriate sections
for configuring both sides for each use case.
RSA Cloud Authentication Service – Yardi Voyager 7S can be integrated with RSA Cloud
Authentication Service in the following way:
SAML via RSA Identity Router (IdP)
Cloud Authentication Service – Identity Router IdP Configuration
Yardi Voyager 7S SAML Configuration

-- 3 -
Yardi Voyager 7S

RSA SecurID Access Server Side Configuration


RSA Cloud Authentication Service Configuration
SAML via RSA Identity Router (IdP)
To configure a SAML Service Provider in RSA Identity Router, you must deploy the connector for Yardi
Voyager 7S in the RSA SecurID Access Console. During configuration of the IdP you will need some
information from the SP. This information includes (but is not limited to) Assertion Consumer Service
URL and Service Provider Entity ID.

Configure RSA Identity Router SAML IdP

Procedure
1. Logon to the RSA SecurID Access console and browse to Applications > Application Catalog,
search for Yardi Voyager 7S and click +Add to add the connector.

2. Enter a name for the application in the Name field on the Basic Information page and click the Next
Step button.
3. Navigate to Initiate SAML Workflow section.
a. Leave the Connection URL field blank
b. Choose IDP-initiated.

Note: The following IdP-initiated configuration works for SP-initiated as


well.

-- 4 -
Yardi Voyager 7S

4. Scroll down to SAML Identity Provider (Issuer) section.

a. Select Choose File and upload the private key.


b. Select Choose File to import the public signing certificate.
c. Select the checkbox for Include Certificate in Outgoing Assertion.

-- 5 -
Yardi Voyager 7S

5. Scroll down to the Service Provider section.

6. In the Assertion Consumer Service (ACS) URL field, replace <baseURL>/<URI> with the values
given to you from Yardi support.
7. In the Audience (Service Provider Entity ID) field, replace <baseURL>/<URI> with the values
given to you from Yardi support.
8. Scroll down to the User Identity section. Verify the settings are correct for your environment. In
this example the username to be presented in email format and the user account will be validated
against the User Store selected.

9. Click Show Advanced Configuration.


10. Under Attribute Extension, enter attributes Email with the correlating value from your Identity
source.

-- 6 -
Yardi Voyager 7S

11. Under Uncommon Formatting SAML Response Options, select Assertion within response.

12. Click Next Step.

-- 7 -
Yardi Voyager 7S

13. On the User Access page, select Allow All Authenticated Users user policy from the available
options.

14. Click Next Step.


15. On the Portal Display page, select Display in Portal.
16. Click Save and Finish.
17. Click Publish Changes. Your application is now enabled for SSO.

18. Navigate to Applications > My Applications.


19. Locate Yardi Voyager 7S in the list and from the Edit option, select Export Metadata.

Partner Product Configuration


Before You Begin
This section provides instructions for configuring Yardi Voyager 7S with RSA SecurID Access. This
document is not intended to suggest optimum installations or configurations.
It is assumed that the reader has both working knowledge of all products involved, and the ability to
perform the tasks outlined in this section. Administrators should have access to the product
documentation for all products in order to install the required components.
All Yardi Voyager 7S components must be installed and working prior to the integration. Perform the
necessary tests to confirm that this is true before proceeding.

Yardi Voyager 7S SAML Configuration


Contact Yardi support and request that SAML be enabled for your account. Provide the support team with
your metadata file from step 19.

-- 8 -

You might also like