Skip to content

Commit 07e2d69

Browse files
committed
Product Backlog Item 2534265: SaaS App Tutorial: Workday Update
1 parent d3d7eae commit 07e2d69

File tree

1 file changed

+18
-28
lines changed

1 file changed

+18
-28
lines changed

articles/active-directory/saas-apps/workday-tutorial.md

Lines changed: 18 additions & 28 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ ms.service: active-directory
99
ms.subservice: saas-app-tutorial
1010
ms.workload: identity
1111
ms.topic: tutorial
12-
ms.date: 11/21/2022
12+
ms.date: 04/18/2023
1313
ms.author: jeedes
1414
---
1515

@@ -73,7 +73,7 @@ Follow these steps to enable Azure AD SSO in the Azure portal.
7373
1. On the **Select a Single sign-on method** page, select **SAML**.
7474
1. On the **Set up Single Sign-On with SAML** page, click the pencil icon for **Basic SAML Configuration** to edit the settings.
7575

76-
![Edit Basic SAML Configuration](common/edit-urls.png)
76+
![Screenshot of showing Edit Basic SAML Configuration.](common/edit-urls.png)
7777

7878
1. On the **Basic SAML Configuration** page, enter the values for the following fields:
7979

@@ -99,21 +99,21 @@ Follow these steps to enable Azure AD SSO in the Azure portal.
9999

100100
1. On the **Set up Single Sign-On with SAML** page, in the **SAML Signing Certificate** section, find **Federation Metadata XML** and select **Download** to download the certificate and save it on your computer.
101101

102-
![The Certificate download link](common/metadataxml.png)
102+
![Screenshot of showing The Certificate download link.](common/metadataxml.png)
103103

104104
1. To modify the **Signing** options as per your requirement, click **Edit** button to open **SAML Signing Certificate** dialog.
105105

106-
![Certificate](common/edit-certificate.png)
107-
108-
![SAML Signing Certificate](./media/workday-tutorial/signing-option.png)
106+
![Screenshot of showing Certificate.](common/edit-certificate.png)
109107

110108
a. Select **Sign SAML response and assertion** for **Signing Option**.
111109

110+
![Screenshot of showing SAML Signing Certificate.](./media/workday-tutorial/signing-option.png)
111+
112112
b. Click **Save**
113113

114114
1. On the **Set up Workday** section, copy the appropriate URL(s) based on your requirement.
115115

116-
![Copy configuration URLs](common/copy-configuration-urls.png)
116+
![Screenshot of showing Copy configuration URLs.](common/copy-configuration-urls.png)
117117

118118
### Create an Azure AD test user
119119

@@ -145,28 +145,28 @@ In this section, you'll enable B.Simon to use Azure single sign-on by granting a
145145

146146
1. In the **Search box**, search with the name **Edit Tenant Setup – Security** on the top left side of the home page.
147147

148-
![Edit Tenant Security](./media/workday-tutorial/search-box.png "Edit Tenant Security")
148+
![Screenshot of showing Edit Tenant Security.](./media/workday-tutorial/search-box.png "Edit Tenant Security")
149149

150150

151151
1. In the **SAML Setup** section, click on **Import Identity Provider**.
152152

153-
![SAML Setup](./media/workday-tutorial/saml-setup.png "SAML Setup")
153+
![Screenshot of showing SAML Setup.](./media/workday-tutorial/saml-setup.png "SAML Setup")
154154

155155
1. In **Import Identity Provider** section, perform the below steps:
156156

157-
![Importing Identity Provider](./media/workday-tutorial/import-identity-provider.png)
157+
![Screenshot of showing Importing Identity Provider.](./media/workday-tutorial/import-identity-provider.png)
158158

159159
a. Give the **Identity Provider Name** like `AzureAD` in the textbox.
160160

161161
b. In **Used for Environments** textbox, select the appropriate environment names from the dropdown.
162162

163163
c. Click on **Select files** to upload the downloaded **Federation Metadata XML** file.
164164

165-
d. Click on **OK** and then **Done**.
165+
d. Click on **OK**.
166166

167-
1. After clicking **Done**, a new row will be added in the **SAML Identity Providers** and then you can add the below steps for the newly created row.
167+
1. After clicking **OK**, a new row will be added in the **SAML Identity Providers** and then you can add the below steps for the newly created row.
168168

169-
![SAML Identity Providers.](./media/workday-tutorial/saml-identity-providers.png "SAML Identity Providers")
169+
![Screenshot of showing SAML Identity Providers.](./media/workday-tutorial/saml-identity-providers.png "SAML Identity Providers")
170170

171171
a. Click on **Enable IDP Initiated Logout** checkbox.
172172

@@ -180,21 +180,11 @@ In this section, you'll enable B.Simon to use Azure single sign-on by granting a
180180

181181
f. In the **Service Provider ID** textbox, type **http://www.workday.com**.
182182

183-
g Select **Do Not Deflate SP-initiated Authentication Request**.
184-
185-
1. Perform the following steps in the below image.
186-
187-
![Workday](./media/workday-tutorial/service-provider.png "SAML Identity Providers")
188-
189-
a. In the **Service Provider ID (Will be Deprecated)** textbox, type **http://www.workday.com**.
190-
191-
b. In the **IDP SSO Service URL (Will be Deprecated)** textbox, type **Login URL** value.
192-
193-
c. Select **Do Not Deflate SP-initiated Authentication Request (Will be Deprecated)**.
183+
g. Select **Do Not Deflate SP-initiated Authentication Request**.
194184

195-
d. For **Authentication Request Signature Method**, select **SHA256**.
185+
h. Click **Ok**.
196186

197-
e. Click **OK**.
187+
i. If the task was completed successfully, click **Done**.
198188

199189
> [!NOTE]
200190
> Please ensure you set up single sign-on correctly. In case you enable single sign-on with incorrect setup, you may not be able to enter the application with your credentials and get locked out. In this situation, Workday provides a backup log-in URL where users can sign-in using their normal username and password in the following format:[Your Workday URL]/login.flex?redirect=n
@@ -207,13 +197,13 @@ In this section, you'll enable B.Simon to use Azure single sign-on by granting a
207197

208198
1. In the **Directory** page, select **Find Workers** in view tab.
209199

210-
![Find workers](./media/workday-tutorial/user-directory.png)
200+
![Screenshot of showing Find workers.](./media/workday-tutorial/user-directory.png)
211201

212202
1. In the **Find Workers** page, select the user from the results.
213203

214204
1. In the following page,select **Job > Worker Security** and the **Workday account** has to match with the Azure active directory as the **Name ID** value.
215205

216-
![Worker Security](./media/workday-tutorial/worker-security.png)
206+
![Screenshot of showing Worker Security.](./media/workday-tutorial/worker-security.png)
217207

218208
> [!NOTE]
219209
> For more information on how to create a workday test user, please contact [Workday Client support team](https://www.workday.com/en-us/partners-services/services/support.html).

0 commit comments

Comments
 (0)