Integrate User-based Alibaba Cloud

User-based Alibaba Cloud allows a user to access Alibaba Cloud resources as a RAM user. See https://www.alibabacloud.com/help/en/ram/user-guide/overview-of-user-based-sso for more information.

Note: This guide was tested using Identity as a Service 5.36 and Alibaba Cloud. Other versions of Alibaba Cloud may require integration and configuration steps that differ from those documented in this procedure. For newer versions of Alibaba Cloud, this integration guide may be used as an initial approach for integrating Alibaba Cloud. In the event of other issues, contact support@entrust.com for assistance.

Prerequisites

Before you begin, create a RAM user and enable the Console access in the Alibaba cloud console. See the Alibaba Cloud documentation.

To integrate user-based Alibaba Cloud with Identity as a Service you must do the following:

Before you begin, open two browser windows: one for Alibaba Cloud and one for IDaaS.

Step 1: Download the user-based metadata file from Alibaba Cloud

Step 2: Add user-based Alibaba Cloud to Identity as a Service

Step 3: Create a resource rule to protect access to Atlassian

Step 4: Download the metadata from Identity as a Service

Step 5: Configure user-based Alibaba Cloud for SSO with IDaaS

Step 6: Test the integration