Configure SAML

To allow the portal to use SAML for authentication, you must configure the assertion rules, the identify provider, and the service provider.

To explain the SAML configuration in full detail is beyond the scope of this guide. It is recommended that when introducing SAML SSO in a customer project, an administrator familiar with the SAML terminology and the configuration of the customer's IdP server, be involved on the customer side. Supplier Portal’s SAML SSO integration solution uses the Sibboleth federated identity solution. To simplify the configuration required to deploy SAML SSO, you can also use third-party SAML SSO vendors such as OneLogin and Salesforce.

To configure the portal to use SSO through SAML, complete the following procedures.

Collect the following information about the IdP: Identity Provider entity ID, Login URL (SSO service), Logout URL (SLO service, optional), and Identity provider public X.509 signing certificate. For descriptions of these parameters, see Identity Provider parameters.

  1. Configure the assertion rules
  2. Configure the IdP
  3. Configure the SP
  4. Enable SSO with SAML

If the SAML SSO configuration parameters you entered are valid, a federation metadata document link is available on the IdP configuration page. You can click this link to download the SAML SSO service provider metadata XML document.