---
title: "Manage Duo SAML"
canonical: "https://docs.aryaka.com/space/KNOW/277971024/Manage%20Duo%20SAML"
format: markdown
---
You can integrate your organization's instance of Cisco Duo with Aryaka Identity Management (AIM) to provide identity authentication using SAML. This integration requires configuration in both MyAryaka and the Duo administrator interface. During configuration, you must provide details about your Duo instance and which users and user groups you want to be included in the integration.  To configure identity authentication using Duo SAML, complete the procedures described in the  Configure Cisco Duo SAML for AIM  topic. This topic describes how to edit or delete an existing Duo configuration.    To edit Duo configuration Open the Aryaka Identity Management page if it is not already open: Log in to MyAryaka. The Home page appears. Click  Global Settings  in the left navigation pane. The Global Settings page appears and displays a series of tiles. Click  Manage  in the Identity Management tile. The Aryaka Identity Management page appears. Click  Manage  on the Enterprise’s Duo tile in the Configured Identity Providers section. The < IdPname > page appears and displays the following: Sync Status tile—Displays the date and time of the last synchronization between AIM and Duo. Users tile—Displays the total number of users configured for this instance of Duo. User Groups tile—Displays the total number of user groups configured for this instance of Duo. Pre-configuration Steps for SAML—Displays read-only fields that were used to configure SAML in Duo. Duo SAML Details pane—Allows you to modify and test the current Duo configuration. User and Group API Details pane—Allows you to modify the API used to query your users and user groups.  (Optional) Click  Test IdP Configuration  in the Duo SAML Details pane to determine if AIM can query Duo. A pop-up message indicates whether the test succeeds or fails. Click  Edit  in the Duo SAML Details pane. The Duo SAML Details pane appears in edit mode. Modify any of the fields as necessary. See the  Configure SAML in MyAryaka  section of the  Configure Cisco Duo SAML for AIM  topic for details about configuration options. Click  Submit . AIM queries Duo and displays the results on the < IdPname > page. (Optional) Click  Test Authorization  in the User and Group API Details pane to verify authorization. A pop-up message indicates whether the test succeeds or fails. Click  Edit  in the User and Group API Details pane. The User and Group API Details pane appears in edit mode. Modify any of the fields as necessary. See the  Configure user and group API details in MyAryaka  section of the  Configure Cisco Duo SAML for AIM  topic for details about configuration options. Click  Submit . AIM queries Duo and displays the results on the < IdPname > page.   To delete Duo configuration   Open the Aryaka Identity Management page if it is not already open: Log in to MyAryaka. The Home page appears. Click  Global Settings  in the left navigation pane. The Global Settings page appears and displays a series of tiles. Click  Manage  in the Identity Management tile. The Aryaka Identity Management page appears. Click  Manage  on the Enterprise’s Duo tile in the Configured Identity Providers section that you want to delete. The < IdPname > page appears. Click the  Delete  icon. You are prompted to confirm that you want to remove the IdP’s configuration. Related topics Configure Cisco Duo SAML for AIM Aryaka Identity Management Security engine rulesets Configure secure identity access portal