Enable SSO:
Click on Configure under the "Single Sign On" block in the settings page.
Inside "Single Sign On" toggle on "Enable SAML Single Sign On". From here, configure the settings desired for SSO and then click "Apply". You can always come back to change the settings.
- Force signin via ID Provider: automatically takes user to SSO when logging in from clients and organization URL.
- Enable SSO for windows and mac clients: let users sign in with SSO from windows and mac clients.
- Enable SSO for mobile clients: let users sign in with SSO from mobile clients.
Configure SSO on OneLogin
Log in to the OneLogin administration web portal: https://app.onelogin.com/login. Using the top bar, navigate to Applications->Applications.
Select "Add App" on the top right of the Applications page.
Search for "SAML Custom Connector (Advanced)" and click on it.
Modify the information here if desired and click "Save" on the top right.
Once the application has been created, navigate to the configuration tab.
- Under "Audience (EntityID)", copy and paste the link under "Access service provider meta data using the following link" from the Triofox.AI SSO configuration page.
- Select "ACS (Consumer) URL", copy and paste the link under "Assertion Consumer Service (ACS) URL" from the Triofox.AI SSO configuration page.
- Finally, click "Save" to save your changes.
To connect Triofox AI to OneLogin, select the "ID Provider" tab in SSO settings and click on the gear icon.
Select "OneLogin" and click "Continue".
Go back to the OneLogin page and select the "SSO" tab, click the copy icon to copy the Issuer URL.
Paste the link in the field "Issuer URL" and click "Continue".
Go back to the OneLogin page. On the top bar, select the Users tab to navigate to the user management page.
Click on the user you want to have access to SSO sign in on Triofox AI.
Under the "Applications" tab, select the plus icon on the top right to add the application.
Select the application we just created and click continue to assign it to this user.
Using SSO
To use SSO on web portal, access Triofox.AI from your custom DNS address, which can be set in web portal by accessing Settings->Branding.
You will also see the option to use SSO after entering your username on the normal portal.
Finally, use the "Login via IDP using the following link" link to directly access the SSO sign in page if needed.
If "Enable SSO for windows and mac clients" is toggled on, an option to sign in with SSO will be displayed after the username is entered and the user clicked continue.
If "Enable SSO for mobile clients" is toggled on, an option to sign in with SSO will be displayed after the username is entered and the user clicked continue.
Comments
0 comments
Please sign in to leave a comment.