
Duo Security
Security Requirements and Controls
Change identity providers
permission
Duo Security integration with LogScale enables secure user authentication for self-cloud installations through SAML configuration and the Duo Access Gateway. This content covers essential prerequisites, including DAG installation and root account setup, along with detailed steps for configuring both LogScale and Duo account settings to establish secure authentication protocols.
Duo security provides a great way of authenticating your users for your self-cloud LogScale installation.
Before configuring SAML authentication, a few things needs to be in place:
Duo Access Gateway (DAG) installed and configured with at least one Authentication Source.
Make sure you have one root account added, typically by adding your email address in the administration section of LogScale's Web UI.
First, open your DAG and go to the Applications page. Take note of the SSO URL and Entity ID parameters. Save the certificate to a known location on your LogScale host.
Next, log into your Duo account and add a new
Generic SAML Service
Provider. Set the Entity ID to
md:EntityDescriptor#entityID
,
Assertion Consumer Service to
md:AssertionConsumerService#Location
,
and NameID Attribute to email
.