Entity Fields Added: Calyx RIM 6.2 CHF 3

The following table describes fields that were added with Calyx RIM 6.2 CHF 3.

Identity Provider

Entity Name Field Name Field Type Description Business Rules
Security Administration > Identity Providers Provider Type Drop-down list With LIQUENT InSight6.2 CHF 3, the field Provider Type has been added to the Identity Providers page. When SSO is enabled and Calyx RIM is configured for multiple Identity Providers (IdPs), the Provider Types (Okta, Azure AD, and PingOne) are displayed in the drop-down list. The Provider Type field is editable only in the create mode of IdP. In the edit mode, this field is a read-only value.
Provider Name Text With LIQUENT InSight6.2 CHF 3, the field Provider Name has been added to the Identity Providers page. This is the name assigned by the Security Administration user to the Identity Provider. This field provides the uniqueness of an Identity Provider.
Active Flag Text With LIQUENT InSight6.2 CHF 3, the field Active Flag has been added to the Identity Providers page. While creating an Identity Provider, this field is set to "Y" by default. In the create mode this field is read-only. Upon deactivation, the flag is automatically set to "N". Only one active Identity Provider can exist at a given time.
Activate/Deactivate Button With LIQUENT InSight6.2 CHF 3, the Activate/Deactivate button has been added to the Identity Providers page. This field is hidden in the create mode and is displayed only in the edit mode on the Identity Providers page. The first time an Identity Provider is edited, the Deactivate button appears. Active=the value is still used. Inactive=the value is not active. When the IdP is deactivated, the active flag is set to "N", and when the IdP is activated, the active flag is set to "Y".

Identity Provider (IdP) type is Azure AD

Entity Name Field Name Field Type Description Business Rules
Security Administration > Identity Providers Application Logout URI Text azure.appLogoutUri Fields appear only if the Provider Type is Azure AD.
Access Token URI Text azure.accessTokenUri
Client ID Text azure.clientId
Client Secret Text azure.clientSecret
Key Discovery URI Text azure.keyDiscoveryUri
User Authorization URI Text azure.userAuthorizationUri
Issuer Base URI Text azure.issuerBaseUri
Tenant ID Text azure.tenantId
SSO Trusted Applications Text sso.trusted.applications
Graph API URI Text azure.graphUri
Graph API Version Text azure.graphApiVersion

Identity Provider (IdP) type is Okta

Entity Name Field Name Field Type Description Business Rules
Security Administration > Identity Providers Application Logout URI Text azure.appLogoutUri Fields appear only if the Provider Type is Okta.
Access Token URI Text azure.accessTokenUri
Client ID Text azure.clientId
Client Secret Text azure.clientSecret
Key Discovery URI Text azure.keyDiscoveryUri
User Authorization URI Text azure.userAuthorizationUri
Issuer Base URI Text azure.issuerBase.uri
Base API URL Text sso.baseApiUrl
Authorization API Token Text sso.authApiToken

Identity Provider (IdP) type is PingOne

Entity Name Field Name Field Type Description Business Rules
Security Administration > Identity Providers Application Logout URI Text azure.appLogoutUri Fields appear only if the Provider Type is PingOne.
Base API URL Text sso.baseApiUrl
Authorization API Token Text sso.authApiToken
SAML Metadata Text sso.saml.metadata.file
SAML Entity ID sso.saml.entityId
SAML Keystore File Name Text sso.cryptographic.store.file
SAML Keystore Password Text sso.cryptographic.store.password
SAML Key Name Text sso.cryptographic.key.name
SAML Key Password Text sso.cryptographic.key.password

User/Group Wizard

Entity Name Field Name Field Type Description Business Rules
Security Administration > Users and Groups Identity Provider Name Drop-down list The field Identity Provider Name has been added to the Security Administration > Users and Groups > Add User/Group Wizard to filter search results based on the selected IdP. This field appears only when SSO is enabled and Calyx RIM is configured for multiple Identity Providers (IdPs).

Only active IdPs are displayed in the drop-down list.