SAML

Aspera Faspex web application supports Security Assertion Markup Language (SAML) 2.0, an open, XML-based standard that enables secure web domains to exchange user authentication and authorization data. With SAML, you can configure single sign-on (SSO) to authenticate users who will use Faspex to access secure content.

With SAML enabled and configured, a user logging into Faspex is redirected to the IdPs sign-on URL. If the user has already signed in with the IdP, the IdP sends a SAML assertion back to Faspex. The user is now logged into Faspex.

When SAML is enabled, Faspex automatically creates a user account when a user logs in based on the information provided by a SAML response. Therefore, you do not need to create the user account manually.
Note: SAML does not register any changes to the account made on the directory service (DS) server.
Note: Do not enable SAML and a DS together. Although a DS exists behind a SAML IdP, Faspex users have access to it. If Faspex is being set up to use SAML, Aspera recommends the following:
  • Disable DS sync.
  • Remove existing DS users from the Faspex system.

Configuring Your Identity Provider (IdP)

For IdP requirements and information on how to set up your IdP to work with Faspex, refer to Configuring Your Identity Provider (IdP)

Configuring SAML

For instructions on how to set up SAML in Faspex, refer to Configuring SAML