Skip to content

Commit b758ee6

Browse files
authored
Update f5-big-ip-ldap-header-easybutton.md
1 parent d106c00 commit b758ee6

File tree

1 file changed

+3
-10
lines changed

1 file changed

+3
-10
lines changed

articles/active-directory/manage-apps/f5-big-ip-ldap-header-easybutton.md

Lines changed: 3 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -162,9 +162,9 @@ Initiate the **Easy Button** configuration to set up a SAML Service Provider (SP
162162

163163
### Configuration Properties
164164

165-
These are general and service account properties. The **Configuration Properties** tab creates up a new application config and SSO object that will be managed through the BIG-IP’s Guided Configuration UI. This configuration can then be reused for publishing more applications through the Easy Button template.
165+
The **Configuration Properties** tab creates a new application config and SSO object. Consider **Azure Service Account Details** section to be the client application you registered in your Azure AD tenant earlier. These settings allow a BIG-IP to programmatically register a SAML application directly in your tenant, along with the properties you would normally configure manually. Easy Button does this for every BIG-IP APM service being enabled for SHA.
166166

167-
Consider the **Azure Service Account Details** be the BIG-IP client application you registered in your Azure AD tenant earlier. This section allows the BIG-IP to programmatically register a SAML application directly in your tenant, along with the other properties you would normally configure manually in the portal. Easy Button will do this for every BIG-IP APM service being published and enabled for SHA.
167+
Some of these are global settings so can be re-used for publishing more applications, further reducing deployment time and effort.
168168

169169
1. Enter a unique **Configuration Name** so admins can easily distinguish between Easy Button configurations.
170170

@@ -186,31 +186,24 @@ The Service Provider settings define the SAML SP properties for the APM instance
186186

187187
![Screenshot for Service Provider settings](./media/f5-big-ip-easy-button-ldap/service-provider.png)
188188

189-
The optional **Security Settings** specify whether Azure AD should encrypt issued SAML assertions. Encrypting assertions between Azure AD and the BIG-IP APM provides additional assurance that the content tokens can’t be intercepted, and personal or corporate data be compromised.
190-
189+
The optional **Security Settings** specify whether Azure AD should encrypt issued SAML assertions. Encrypting assertions between Azure AD and the BIG-IP APM provides additional assurance that the content tokens can’t be intercepted, and personal or corporate data be compromised.
191190

192191
3. From the **Assertion Decryption Private Key** list, select **Create New**
193-
194192

195193
![Screenshot for Configure Easy Button- Create New import](./media/f5-big-ip-oracle/configure-security-create-new.png)
196194

197195
4. Select **OK**. This opens the **Import SSL Certificate and Keys** dialog in a new tab
198196

199-
200197
6. Select **PKCS 12 (IIS)** to import your certificate and private key. Once provisioned close the browser tab to return to the main tab.
201198

202-
203199
![Screenshot for Configure Easy Button- Import new cert](./media/f5-big-ip-oracle/import-ssl-certificates-and-keys.png)
204200

205201
6. Check **Enable Encrypted Assertion**.
206202

207-
208203
8. If you have enabled encryption, select your certificate from the **Assertion Decryption Private Key** list. This is the private key for the certificate that BIG-IP APM will use to decrypt Azure AD assertions.
209204

210-
211205
9. If you have enabled encryption, select your certificate from the **Assertion Decryption Certificate** list. This is the certificate that BIG-IP will upload to Azure AD for encrypting the issued SAML assertions.
212206

213-
214207
![Screenshot for Service Provider security settings](./media/f5-big-ip-easy-button-ldap/service-provider-security-settings.png)
215208

216209
### Azure Active Directory

0 commit comments

Comments
 (0)