

Puppet Enterprise 2021 release includes support for SAML 2.0
source link: https://puppet.com/blog/puppet-enterprise-2021-release-includes-support-for-saml-2-0/?utm_campaign=Feed%3A+PuppetLabs+%28Puppet+Labs%29
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.

Puppet Enterprise 2021 release includes support for SAML 2.0
Security is essential. It’s top of mind for organizations of all sizes and it’s certainly a top priority for Puppet. The latest release of Puppet Enterprise 2021.0 now offers support for SAML 2.0 providing a more secure and efficient authentication path for our customers to access their Puppet environments, applications and tooling.
Security Assertion Markup Language (SAML) is a protocol for authenticating applications and allows companies to set up multi-factor authentication (MFA) and single sign-on (SSO), along with other features provided by the identity provider (IDP). Not only does SAML provide greater security by way of a single point of authentication, it also streamlines the user experience and minimizes the number of credentials to reset—think forgotten passwords. SAML offers extra safeguards to help protect and keep safe an organizations’ intellectual properties.
Let’s dive into some of the key details and discuss how to set up SAML 2.0 for your environment.
With this release, we’ve tested the most common identity providers including Okta v2021.01.0 and Microsoft ADFS 5.0 (Windows 2019). Other IDPs can also be used and we’ve included different attribute mappings for those; however, they may be named slightly differently. For example ‘user.login’ is the same as ‘uid’. More details can be found in our documentation too.
Authenticate securely with token generation
Tokens are needed to authenticate users securely. When SAML is enabled you will use tokens throughout Puppet that are authenticated. The token generation page allows you to get a secure token for a specified lifetime (up to ten years) to use in tools other than the GUI. For example, you can generate a token to use on the command line interface and for APIs with a set timeframe to ensure a secure login to safely access your infrastructure and get work done more efficiently. Additional features include token revocation. which allows Puppet admins to revoke tokens associated with compromised accounts and visibility into tokens generated (not the actual token, just the metadata).

Setting up SAML 2.0
SAML 2.0 support is only available in Puppet Enterprise 2021 and is not backwards compatible. Also to note, organizations can have SAML enabled along with LDAP and/or local user accounts. To learn more about setting up SAML 2.0 to enable multi-factor authentication and single sign-on within your Puppet environment, check out our docs page.
Feedback is super important. Drop us a line in the Puppet Slack channel to let us know what you think.
Margaret Lee is a Product Manager at Puppet.
Learn more
Share this post via:
Recommend
-
44
At PuppetConf 2017, Puppet Tasks were introduced as part of the new project Bolt . A task allows you to run a program on an arbitrary number of nodes. The program can be j...
-
8
Backing up and restoring Puppet EnterprisePuppet Enterprise — 2018.1.18Keep regular backups of your PE infrastructure. Backups allow you to more easily migrate to a new master, troubleshoot, and quickly r...
-
12
Upgrade your PE installation as new versions become available. Upgrade paths These are the valid upgrade paths for PE.Note: Beginning with PE 2015.2, Puppet supports upgrade from any version, and
-
9
Articles in this section Download the latest primary server packages for Puppet Enterprise ...
-
10
Check your facts with Puppet Enterprise 2021.1by Beth Glenfield|3 June 2021See more posts about:
-
2
this time it's stable 0.15.0! It includes updates to Giraffe 5.0, ASP .NET 5.0 and .NET 5.0, adds support for Endpoint Routing (which is way faster than old routing) and moreDon’t miss what’s happeningPeople on Twitter are the fi...
-
6
Remote support service beta for Puppet Enterprise customersby Marty Ewings|30 June 2021See more posts about:
-
9
How to connect Puppet Enterprise to Okta using SAMLby Chris Lawrence|18 November 2021Nowadays, staff in organizations are required to access multiple applic...
-
13
homeblogenhance your puppet enterprise support workflow with pe_status_checkEnhance your Puppet Enterprise support work...
-
6
homeblognew puppet enterprise lts release increases security and complianceNew Puppet Enterprise LTS release increases...
About Joyk
Aggregate valuable and interesting links.
Joyk means Joy of geeK