KOP Integrations - AWS SSO - Rafay Product Documentation

AWS SSO

Follow the steps documented below to integrate access to your controller's web console with AWS SSO for Single Sign On (SSO).


Step 1: Create IdP

Important: Within an org, the domain of an IdP cannot be used for another IdP. A domain existing in an org can be used in multiple orgs (for one IdP in each org)


Step 2: View SP Details

The IdP configuration wizard will display critical information that you need to copy/paste into your AWS SSO Console. Provide the following information to your AWS SSO administrator.


Step 3: Create App in AWS SSO


Step 4: Configure SAML Settings

In the "Configure Custom SAML 2.0 application" page, go to "Details" section and:

In the "Application metadata", click the option "If you don't have a metadata file, you can manually type your metadata values"

Go to the "Attribute mappings" tab of the application

Go to the "Assign users" tab of the application


Step 5: Configure Groups


Step 6: Specify IdP Metadata