Skip to main content

SAML2

How to set up saml2-compatible identity providers...

XML Set Up 

  • Log in to Identity Provider (One Login) 
  • Go to "Applications"
  • Click on "AddApp"
  • Search for "SAML"
  • Select "SAML Test Connector (Advanced) 2.0
  • Insert a display name 
  • Click Save
  • Log into CMS
  • Select App 
  • Click on "Settings"
  • Click on "Authentication"
  • Click on "Add Provider"
  • Fill in; "Provider Name"
  • Return to One Login  and copy the Metadata URL by clicking on more actions and right-clicking 
  • Copy the link into the CMS field "Metadata URL"
  • Insert a name into the "Unique User I.D" field (for example; NameId)
  • Click Save in CMS
  • Click on "View Configuration"
  • Copy the "Relay State URL" into the Configuration TAB in One Login 
  • Copy the "Audience" into the Configuration TAB in One Login 
  • Copy the "Recipient" into the Configuration TAB in One Login 
  • Click Save in One Login 
  • Click on the "Parameters" TAB in One Login 

Field Mapping

  • Click the Add + Icon 
  • Type in the "Field Name"
  • Tick the "Include SAML assertion" box
  • Click Save
  • Link up the Field Name with the appropriate Value 

Repeat above as necessary 

  • Click Save
  • Return to CMS
  • Click on "Edit Provider"
  • Scroll down and click on "Add Field Mapping"
  • Enter each field mapping and click "Save"
  • Scroll Up and Click on "Display" (here you can change the login text and or add a Logo to sit alongside the SSO Login on the FE Screen 
  • Click Save

Adding a User to the App through One Login

  • Click on "Users"
  • "New Users"
  • Click "Save User"
  • Click on "Applications" on the side panel on the screen 
  • Click "Add Application" 
  • Select the App you wish to grant the user permission to
  • Click "Continue"
  • Click "Save"

Logging into Front End

  • Open up Front End of App
  • Click on "Sign In"
  • Enter your credentials
  • At this point, if any more User information is required then a screen will appear for the user to fill them in (for example; first name), otherwise, you will receive a "Success Screen" before FE loads up 
  • As this is the first time the User will of logged in, they will receive the company privacy message to accept or decline
  • The user is now logged into the App 

Manual Set Up

  • Log in to Identity Provider (One Login) 
  • Go to "Applications"
  • Click on "AddApp"
  • Search for "SAML"
  • Select "SAML Test Connector (Advanced) 2.0
  • Insert a display name 
  • Click Save