Duo Security

Security Requirements and Controls

Duo Security integration with LogScale enables secure user authentication for self-cloud installations through SAML configuration and the Duo Access Gateway. This content covers essential prerequisites, including DAG installation and root account setup, along with detailed steps for configuring both LogScale and Duo account settings to establish secure authentication protocols.

Duo security provides a great way of authenticating your users for your self-cloud LogScale installation.

Before configuring SAML authentication, a few things needs to be in place:

  • Duo Access Gateway (DAG) installed and configured with at least one Authentication Source.

  • Make sure you have one root account added, typically by adding your email address in the administration section of LogScale's Web UI.

First, open your DAG and go to the Applications page. Take note of the SSO URL and Entity ID parameters. Save the certificate to a known location on your LogScale host.

Next, log into your Duo account and add a new Generic SAML Service Provider. Set the Entity ID to md:EntityDescriptor#entityID, Assertion Consumer Service to md:AssertionConsumerService#Location, and NameID Attribute to email.