Checks whether SAML-based role SSO is enabled. If enabled, the evaluation result is Compliant.
Scenarios
SAML-based role SSO streamlines access management across multiple applications while improving security, management efficiency, and user experience. It is an ideal authentication and authorization management solution for enterprises.
Risk level
Default risk level: medium.
You can change the risk level when you apply this rule.
Compliance evaluation logic
-
If SAML-based role SSO is enabled, the evaluation result is Compliant.
-
If SAML-based role SSO is not enabled, the evaluation result is Non-compliant.
Rule details
|
Item |
Description |
|
Rule name |
ram-role-sso-saml-enabled |
|
Rule ID |
|
|
Tag |
SSO, RAM, and User |
|
Automatic remediation |
Not supported |
|
Trigger type |
Periodic execution |
|
Evaluation frequency |
Every 24 hours |
|
Supported resource type |
All resources |
|
Input parameter |
None |
Non-compliance remediation
Enable SAML-based role SSO. For more information, see Overview of user-based SSO.