User Tools

Site Tools



en:single_sign_on_configuration

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
en:single_sign_on_configuration [2026/05/13 16:01] ergoen:single_sign_on_configuration [2026/07/28 11:41] (current) – [Step 8: Manage Certificates] toomas
Line 13: Line 13:
 Before configuring Directo, you need to register Directo as a Service Provider (SP) in your Identity Provider. Use the following values: Before configuring Directo, you need to register Directo as a Service Provider (SP) in your Identity Provider. Use the following values:
  
-^ Parameter ^ Value ^ +^ Parameter                                         ^ Value                                                                                                                                                                                                                                                                                                                                                                                                      
-| **Reply URL / ACS (Assertion Consumer Service)** | ''https://login.directo.ee/api/saml/callback''+| **Reply URL / ACS (Assertion Consumer Service)**  | ''https://login.directo.ee/api/saml/callback''                                                                                                                                                                                                                                                                                                                                                             
-| **Entity ID / Identifier** | ''https://login.directo.ee/api/saml/callback'' +| **Entity ID / Identifier**                        The default value is https://login.directo.ee/api/saml/callback. The SAML SSO Entity ID (or Identifier) is a unique identifier for the Identity Provider (IdP) or Service Provider (SP). If the system-provided default value is not suitable, industry best practice is to use a unique URL in URI format or a designated URN. :!: **It must be strictly unique within the system (Identity Provider)!**  
-| **Name ID format** | ''urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress'' (if using Email mapping) or ''urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified'' (if using Username mapping) |+| **Name ID format**                                | ''urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress'' (if using Email mapping) or ''urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified'' (if using Username mapping)                                                                                                                                                                                                                               |
  
 **Where to configure:** **Where to configure:**
Line 36: Line 36:
   - You will be taken to the IdP configuration form.   - You will be taken to the IdP configuration form.
  
-{{:et:ergo20260506-150112.png}}+{{:et:toomas20260728-112827.png}}
  
 ===== Step 4: Fill in the Button Title ===== ===== Step 4: Fill in the Button Title =====
Line 85: Line 85:
 ===== Step 7: Save the Configuration ===== ===== Step 7: Save the Configuration =====
  
-{{:et:ergo20260506-150533.png}}+{{:et:toomas20260728-113610.png}}
  
 Click **Save**. If you provided a Metadata URL, Directo will automatically import the IdP's signing certificates during the first save. Click **Save**. If you provided a Metadata URL, Directo will automatically import the IdP's signing certificates during the first save.
Line 93: Line 93:
 After saving, the **Trusted Certificates** section appears below the form. This section shows the signing certificates imported from your IdP's metadata. After saving, the **Trusted Certificates** section appears below the form. This section shows the signing certificates imported from your IdP's metadata.
  
-{{:et:ergo20260506-151935.png}}+{{:et:toomas20260728-113155.png}}
  
 ==== Importing Certificates ==== ==== Importing Certificates ====
en/single_sign_on_configuration.1778677311.txt.gz · Last modified: 2026/05/13 16:01 by ergo

Donate Powered by PHP Valid HTML5 Valid CSS Driven by DokuWiki