---
title: Configuring a PingOne for Enterprise SAML Connection for CyberArk PVWA
description: Set up SAML using PingOne for Enterprise for CyberArk Password Vault Web Access (PVWA).
component: solution-guides
page_id: solution-guides:single_sign-on_use_cases:htg_integrate_cyberark_sso_authn_p14e_saml
canonical_url: https://docs.pingidentity.com/solution-guides/single_sign-on_use_cases/htg_integrate_cyberark_sso_authn_p14e_saml.html
llms_txt: https://docs.pingidentity.com/solution-guides/llms.txt
docs_for_agents: https://developer.pingidentity.com/build-with-ai/docs-for-agents.md
revdate: April 29, 2024
section_ids:
  before-you-begin: Before you begin
  steps: Steps
---

# Configuring a PingOne for Enterprise SAML Connection for CyberArk PVWA

Set up SAML using PingOne for Enterprise for CyberArk Password Vault Web Access (PVWA).

## Before you begin

You must have the following information from your CyberArk and PingID environments to configure a SAML connection in PingFederate or PingOne for Enterprise:

* CyberArk's SAML Entity ID (Audience Value).

  |   |                                                                               |
  | - | ----------------------------------------------------------------------------- |
  |   | In the step-by-step SAML configuration, the value of `PasswordVault` is used. |

* CyberArk's Assertion Consumer Service (ACS) URL (POST Method). In this step-by-step SAML configuration example, the following values are used:

  * `https://components.cyberark.local/PasswordVault/auth/saml/` for PVWA v9

  * `https://components.cyberark.local/PasswordVault/api/auth/saml/logon` for PVWA v10

* A PingID registered account.

* The PingID properties file. For more information, see [Managing the PingID properties file](https://docs.pingidentity.com/pingid/pingid_integrations/pid_managing_pid_properties_file.html).

## Steps

1. Go to **Applications → My Applications → SAML**.

2. In the **Add Application** list, select **New SAML Application** to open the **New Application** window configuration.

3. In the **Application Details** workflow:

   1. Complete the **Application Name**, **Application Description**, **Category**, and **Graphics** fields.

   2. Click **Continue to Next Step**.

4. In the **Application Configuration** workflow:

   1. Click **I have the SAML configuration**.

   2. Enter the **Assertion Consumer Service (ACS)** value.

   3. Enter the **Entity ID** value.

   4. Click **Continue to Next Step**.

5. In the **SSO Attribute Mapping** workflow:

   1. Enter the **Identity Bridge Attribute or Literal Value** value.

      |   |                                                         |
      | - | ------------------------------------------------------- |
      |   | This is the user value that identifies a CyberArk user. |

   2. Click **Save & Publish**.
