You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
1. On the **Set up Single Sign-On with SAML** page, in the **SAML Signing Certificate** section, select the copy button to copy the **App Federation Metadata Url**. Save the URL.
86
+
87
+
5. In the **Basic SAML Configuration** section, update the **Sign-on URL** text box, type one of the following URLs and save it:
88
+
89
+
| Sign-on URL |
90
+
|--------------|
91
+
|`https://cloudacademy.com/login/enterprise/`|
92
+
|`https://app.qa.com/login/enterprise/`|
93
+
94
+
95
+
1. Select the pencil button for **SAML Signing Certificate** to edit the settings:
96
+
97
+

98
+
99
+
1. Download the **PEM certificate**:
100
+
101
+

102
+
103
+
1. On the **Set up Cloud Academy** section, copy the **Login URL**:
92
104
93
-

105
+

94
106
95
107
### Create an Azure AD test user
96
108
@@ -134,7 +146,7 @@ In this section, you'll enable B.Simon to use Azure single sign-on by granting t
134
146
135
147

136
148
137
-
a. In the **SSO URL(Location)** box, paste the login URL value that you copied from the Azure portal.
149
+
a. In the **SSO URL(Location)** box, paste the login URL value that you copied from the Azure portal, from point 7 of [Configure Azure AD SSO](#configure-azure-ad-sso).
138
150
139
151
c. Open the downloaded Base64 certificate from the Azure portal in Notepad. Paste its contents into the **Certificate** box.
140
152
@@ -144,13 +156,36 @@ In this section, you'll enable B.Simon to use Azure single sign-on by granting t
144
156
145
157

146
158
147
-
a. In the **SAML Attributes Mapping** section, fill the required fields with the source attribute values.
159
+
a. In the **SAML Attributes Mapping** section, fill the required fields with the source attribute values:
b. In the **Security Settings** section, select the **Authentication Requests Signed?** check box to set this value to **True**.
150
168
151
-
c. In the **Extra Settings(Optional)** section, fill the **Logout URL** box with the logout URL value that you copied from the Azure portal.
169
+
c. In the **Extra Settings(Optional)** section, fill the **Logout URL** box with the logout URL value that you copied from the Azure portal, from point 7 of [Configure Azure AD SSO](#configure-azure-ad-sso).
152
170
153
171
1. Click **Save and Test**.
172
+
2. After this operation, a pop-up will appear with the service provider information, from there you have to download the XML file:
173
+

174
+
3. Now that you have the XML file of the service provider, go back on the application that you've created on Azure Portal, inside the **single sign-on** section, and upload the MetaData file:
175
+

176
+
4. Now that you've updated the service provider metadata, you can go back on the SSO panel of your Cloud Academy company site and proceed with the test and activation. Click on **continue** from the service provider popup:
177
+

178
+
5. Click on **Test SSO connection** to start the test flow:
179
+

180
+
> [!NOTE]
181
+
> If you are logged in Cloud Academy as your test user created previously, proceed with test flow.
182
+
> Otherwise close the popup, scroll up to **General Settings**, copy/paste Subdomain URL on Incognito browser tab and then log in as your test user.
183
+
> If everything is ok, you can close Incognito tab, click on **Save and Test**.
184
+
> It will re-open the Service Provider popup. Now you can click on **continue**, then on **Test SSO connection** again and finally on **Test was succesfull**, because you've already test it on Incognito tab.
185
+
> Now you can go to the next step.
186
+
6. If everything is ok, you can finally activate the SSO integration for the whole company:
187
+

188
+
154
189
155
190
> [!NOTE]
156
191
> For more information on how to configure the Cloud Academy, see [Setting Up Single Sign-On](https://support.cloudacademy.com/hc/articles/360043908452-Setting-Up-Single-Sign-On).
0 commit comments