Hi @Randy.Manipon ,
That ends up being a bit of a complex answer.
Right now, tenant user ONLY refers to a user that logs into a controller where the controller setting being used is "local"/"AppDynamics" user. There are 2 SAML configurations now - one for Accounts website services that is only for Accounts website access (not controller account) and one for Controller accounts, which is only for controller account use.
So, right now, you would have to setup SAML for Accounts to give your users access to Accounts services (training, support, community, etc) using their corporate credentials and SAML using the "Security Provider" settings within the controller itself. That will allow your users to access the controller/product capabilities using their corporate credentials.
In the not too distant future, that will be changed somewhat, but more on that will be provided when we are ready. For now, tenant users are authenticated only by AppDynamics, not SAML. If you want SAML for all surfaces, configure it in the Accounts SAML Federation area and in the controller Security Provider area.
I hope that helps,
Bill
... View more