Login Requirements for Security Cloud Control Firewall Management
To log in to Security Cloud Control Firewall Management , a customer needs an account with a SAML 2.0-compliant identity provider (IdP), a multifactor authentication provider, and a user record in Security Cloud Control Firewall Management .
The IdP account contains the user's credentials and the IdP authenticates the user based on those credentials. Mutlifactor authentication provides an added layer of identity security. The Security Cloud Control Firewall Management user record primarily contains the username, the Security Cloud Control Firewall Management tenant with which they are associated, and the user's role. When a user logs in, Security Cloud Control Firewall Management tries to map the IdP's user ID to an existing user record on a tenant in Security Cloud Control Firewall Management . The user is logged in to that tenant when Security Cloud Control Firewall Management finds a match.
Unless your enterprise has its own single sign-on identity provider, your identity provider is Security Cloud Sign On. Security Cloud Sign On uses Duo for multifactor authentication.
Customers can integrate their own IdP with Security Cloud Control Firewall Management if they choose.
To log into Security Cloud Control Firewall Management , you must first create an account in Cisco Security Cloud Sign On, configure multifactor authentication (MFA) using Duo Security and have your tenant Super Admin create a Security Cloud Control Firewall Management record.
On October 14, 2019, Security Cloud Control Firewall Management converted all previously existing tenants to use Cisco Security Cloud Sign On as their identity provider and Duo for MFA.
Note |
|
If your Security Cloud Control Firewall Management tenant was created on or after October 14, 2019, see Initial Login to Your New Security Cloud Control Firewall Management Tenant.
If your Security Cloud Control Firewall Management tenant existed before October 14, 2019, see Migrate to Cisco Security Cloud Sign On Identity Provider.