AWS Client VPN (SAML)
This guide configures Casdoor as a SAML identity provider for AWS Client VPN.
Передумови
- AWS account with permission to configure the service
- Amazon VPC with an EC2 instance (VPC setup, EC2); in the instance security group, allow ICMP from the VPC CIDR for testing
- A private certificate in AWS Certificate Manager (ACM) (import guide)
- Windows or Mac with AWS Client VPN installed
Configure the SAML application in Casdoor
- Set Redirect URL to
urn:amazon:webservices:clientvpn.

- Set SAML reply URL to
http://127.0.0.1:35001.

- Save the SAML metadata as an XML file for the next step.

Налаштування AWS
Add Casdoor as an identity provider
- In the IAM console, open Identity providers → Create provider.
- Choose SAML, give the provider a name, and upload the metadata file from Casdoor.
- Click Next step → Create.
