For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

SaaS Federation iApp

Problem this snippet solves:

f5.saas_idp.v.1.0.1rc1

The official release candidate iApp template has been posted to downloads.f5.com in the RELEASE_CANDIDATE directory of the iApp package. This release has the following changes:

  • Added support for BIG-IP v12.1
  • Modified the 'SP Initiated?' field in the iApp to 'IdP Initiated?' and the values to 'No, SP only' and 'Yes, IdP and SP' to make this section more clear.

f5.saas_idp.v.1.0.0rc1

This release candidate version of the iApp template, released on 4/20/16, provides improved functionality and additional options. The deployment guide has also been substantially updated.

f5.saas_idp.v.0.9.0

This iApp allows you to configure F5 BIG-IP Access Policy Manager(APM) as SAML Identity Provider(IdP) to 11 commonly used SaaS applications:

Office 365
Salesforce.com
Workday
Amazon Web Services(limited support)
Concur
Service-Now
Jive
Wombat
Zendesk
WebEx
Google Apps

How to use this snippet:

For information on how to download, install, and use the iApp (and various other prerequisites), see the deployment guide for this configuration: http://f5.com/pdf/deployment-guides/saml-idp-saas-dg.pdf

Code :

https://downloads.f5.com/esd/product.jsp?sw=BIG-IP&pro=iApp_Templates
Updated Jun 06, 2023
Version 2.0

2 Comments

  • Hello,

    First off thanks for developing this iApp!

    I'm trying to configure the BigIP as an IdP for a custom service provider.

    I tried following the guide and before deploying the iApp I have created a Local IdP Service and an SP connector with details from the service provider.

    When I try to deploy the iApp, I selected the local IdP service as the application and the SP connector as the SP. In this case what should I be putting in "What EntityID do you want to use for your SaaS applications?"

    Should I put the same EntityID as I created in the Local IdP Service? Or something different? I have tried both and I get the following error when I try to deploy the iApp

    01070712:3: Values (/Common/i_saml_idp_SAMLF5_saml_sso) specified for SAML Resource (/Common/i_saml_idp_SAMLF5_saml_resource_sso): foreign key index (saml_sso_config_FK) do not point at an item that exists in the database.
    

    Any help appreciated.

    Cheers,

    Simon

  • Hi There

    having the exact same issue as Simon

    foreign key index (saml_sso_config_FK) do not point at an item that exists in the database.

    have checked the config dozens of times and cannot work out where this error comes from ? :-S

    any info appreciated thnx -gahanp

    === BIG-IP APM version 13.1.0.3 build 005 ===