Configuring SSO for PingID
Prerequisites
Ensure that you have the following before you start configuring the PingID:
- PingID account with admin privileges
- The Clumio metadata XML file, refer to this knowledge base article for instructions on how to get that information from the Clumio dashboard.
In Clumio
- Log on to Clumio.
- Navigate to Administration > Access management > Authentication (SSO/MFA).
- Click Configure SSO.
- Select Identity provider (IdP) name as PingID
- Copy the Recipient URL (Assertion Customer Service (ACS) URL), and the Destination URL (Default Reply URL) and Audience Restriction (SP Entity ID). This will be needed for the IdP side setup.
- Following steps will be completed after the IdP side configuration is completed.
- Scroll down and upload the metadata retrieved from the IdP. You can either use the URL, upload the metadata XML file, or configure it manually.
- Next click Save Configuration.
- Click Test with my Account. This opens a new tab to test the SSO connection.
- Once the above step is successful, click on Activate SSO. Please note that this step is important for SSO enablement.
- Optionally, enable the check box to send emails to notify all users of the SSO enablement, else click Enable.
Configuring PingID as an IdP for Clumio Service
- On the Advanced Identity Cloud admin console, go to Applications, and click Custom Application.
- On the Add a Custom Application dialog box, choose SAML.
- Click Next.
- SAML 2.0
- On the Application Details page, configure the following fields:
- Name: The name of the application.
- Description: A description of the application.
- Application Owners: The owners of the application.
- App Logo URI: The URl of the location of the application logo.
- Click Create Application.
- SAML 2.0 - Set up single sign-on
- Click the Sign On tab.
- Click Set Up SSO.
- If you have set up multiple domains, in the Select a domain drop-down field, select a domain to use for sign-on.
- Click Next.
- Follow the steps on the Set Up Single Sign-on page.
- Click Next and Save.
- To view IdP metadata for the application, click View IdP Metadata.
- To update the application provider metadata, click Update Metadata.
- Copy the Recipient URL > Single Sign On (ACS) URL
- Copy the SP Entity ID > Audience URI
- To download a certificate, click Download Certificate.
- To set advanced settings, click Show advanced settings, and set or review the following
- Name ID Format >
- Assertion Encryption > Unencrypted
- Click Save.
- Revert to In Clumio Section for further configuration steps
Contactย [email protected]ย with any questions or concerns.
Updated 3 days ago