Duo Security
Security Requirements and Controls
Change identity providers
permission
Duo security provides a great way of authenticating your users for your self-cloud LogScale installation.
Before configuring SAML authentication, a few things needs to be in place:
Duo Access Gateway (DAG) installed and configured with at least one Authentication Source.
Make sure you have one root account added, typically by adding your email address in the administration section of LogScale's Web UI.
First, open your DAG and go to the Applications page. Take note of the SSO URL and Entity ID parameters. Save the certificate to a known location on your LogScale host.
Next, log into your Duo account and add a new
Generic SAML Service
Provider. Set the Entity ID to
md:EntityDescriptor#entityID
,
Assertion Consumer Service to
md:AssertionConsumerService#Location
,
and NameID Attribute to email
.