This article applies to:
- MailMarshal Cloud (SEG Cloud)
- Single Sign On to SQM
- Default domain update September 2022
Background:
- As of September 2022, Trustwave has changed the default domain in MailMarshal Cloud URLs. Users will be redirected seamlessly to the new URL. The SAML SSO authentication for the SQM page must be updated to accept the new URL.
- As of October 2022, SQM is also available on a new URL related to the new Customer Web Interface. The same requirements apply if customers want SAML SSO to be available for this additional URL. However it is not necessary to use this additional URL.
- For Microsoft Azure Active Directory and ADFS, the existing Identity Provider can be updated with the new domain information as well as the old information.
- For some other SSO providers, it may be necessary to set up a second Identity Provider. In this case the provider selected in MailMarshal Cloud must be updated to the Identity Provider that uses the correct information.
Procedure:
For Microsoft Azure Active Directory:
- Log in to the Azure Portal.
- Navigate to Enterprise Applications and select the application you configured to support MailMarshal Cloud SSO.
(Click for larger image)
- Under Set up single sign on, click Get started
- Edit Basic SAML Configuration
- In the Identifier section and the Reply URL section, add the new URLs for your region (US, AU, or EU).
Note the image shows the US instance URL.
- At the top of the panel, click Save.
- No further action is required. SSO will work with both the old and new URL. You can test using the new URL.
- In ADFS Management, edit the Relying Party Trust.
- On the Identifiers tab, add the new SQM URL for your region (US, AU, or EU).
Note the image shows a test URL.
- On the Endpoints tab, add the new SSOACS URL for your region with a binding of POST.
- Click Apply.
- Add a new provider following the instructions in MailMarshal Cloud KB article 21040. Use the new URLs for your region as previously notified.
- Change the selected Identity Provider from the MailMarshal Cloud Console.
Notes:
Once the change is complete and seen to be working (for safety, after a month) you can remove the old URLs from the Azure AD provider, or the old identity provider instance from other providers.
Trustwave MailMarshal Cloud KB article Q21187
Last Modified: October 11, 2022