You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/active-directory/saas-apps/netvision-compas-tutorial.md
+51-12Lines changed: 51 additions & 12 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -41,7 +41,7 @@ To get started, you need the following items:
41
41
In this tutorial, you configure and test Azure AD SSO in a test environment.
42
42
43
43
* Netvision Compas supports **SP and IDP** initiated SSO
44
-
* Once you configure Netvision Compas you can enforce Session Control, which protects exfiltration and infiltration of your organization’s sensitive data in real time. Session Control extends from Conditional Access. [Learn how to enforce session control with Microsoft Cloud App Security](https://docs.microsoft.com/cloud-app-security/proxy-deployment-aad)
44
+
* Once you configure Netvision Compas you can enforce Session Control, which protects exfiltration and infiltration of your organization's sensitive data in real time. Session Control extends from Conditional Access. [Learn how to enforce session control with Microsoft Cloud App Security](https://docs.microsoft.com/cloud-app-security/proxy-deployment-aad)
45
45
46
46
47
47
## Adding Netvision Compas from the gallery
@@ -92,16 +92,14 @@ Follow these steps to enable Azure AD SSO in the Azure portal.
92
92
In the **Sign-on URL** text box, type a URL using the following pattern:
> These values are not real. Update these values with the actual Identifier, Reply URL and Sign-on URL. Contact [Netvision Compas Client support team](mailto:[email protected]) to get these values. You can also refer to the patterns shown in the **Basic SAML Configuration** section in the Azure portal.
95
+
> [!NOTE]
96
+
> These values are not real. Update these values with the actual Identifier, Reply URL and Sign-on URL. Contact [Netvision Compas Client support team](mailto:[email protected]) to get these values. You can also refer to the patterns shown in the **Basic SAML Configuration** section in the Azure portal.
97
97
98
-
1. On the **Set up single sign-on with SAML** page, in the **SAML Signing Certificate** section, find **Certificate (Base64)** and select **Download** to download the certificate and save it on your computer.
98
+
1. On the **Set up single sign-on with SAML** page, in the **SAML Signing Certificate** section, find **Federation Metadata XML** and select **Download** to download the metadata file and save it on your computer.
@@ -127,26 +125,67 @@ In this section, you'll enable B.Simon to use Azure single sign-on by granting a
127
125
128
126
1. Select **Add user**, then select **Users and groups** in the **Add Assignment** dialog.
129
127
130
-

128
+

131
129
132
130
1. In the **Users and groups** dialog, select **B.Simon** from the Users list, then click the **Select** button at the bottom of the screen.
133
131
1. If you're expecting any role value in the SAML assertion, in the **Select Role** dialog, select the appropriate role for the user from the list and then click the **Select** button at the bottom of the screen.
134
132
1. In the **Add Assignment** dialog, click the **Assign** button.
135
133
136
134
## Configure Netvision Compas SSO
137
135
138
-
To configure single sign-on on **Netvision Compas** side, you need to send the downloaded **Certificate (Base64)** and appropriate copied URLs from Azure portal to [Netvision Compas support team](mailto:[email protected]). They set this setting to have the SAML SSO connection set properly on both sides.
136
+
In this section you enable SAML SSO in **Netvision Compas**.
137
+
1. Log into **Netvision Compas** using an administrative account and access the administration area.
In this section, you create a user called B.Simon in Netvision Compas. Work with [Netvision Compas support team](mailto:[email protected]) to add the users in the Netvision Compas platform. Users must be created and activated before you use single sign-on.
141
+
1. Locate the **System** area and select **Identity Providers**.
1. Enter meaningful values for the **Display name** and **Description** fields.
151
+
1. Assign **Netvision Compas** users to the IDP by selecting from the **Available users** list and then selecting the **Add selected** button. Users can also be assigned to the IDP while following the provisioning procedure.
152
+
1. For the **Metadata** SAML option click the **Choose File** button and select the metadata file previously saved on your computer.
In this section, you configure an existing user in **Netvision Compas** to use Azure AD for SSO.
161
+
1. Follow the **Netvision Compas** user provisioning procedure, as defined by your company or edit an existing user account.
162
+
1. While defining the user's profile, make sure that the user's **Email (Personal)** address matches the Azure AD username: [email protected]. For example, `[email protected]`.
Users must be created and activated before you use single sign-on.
143
167
144
168
## Test SSO
145
169
146
-
In this section, you test your Azure AD single sign-on configuration using the Access Panel.
170
+
In this section, you test your Azure AD single sign-on configuration.
171
+
172
+
### Using the Access Panel (IDP initiated).
147
173
148
174
When you click the Netvision Compas tile in the Access Panel, you should be automatically signed in to the Netvision Compas for which you set up SSO. For more information about the Access Panel, see [Introduction to the Access Panel](https://docs.microsoft.com/azure/active-directory/active-directory-saas-access-panel-introduction).
1.**(optional)** If the user is assigned multiple IDPs within **Netvision Compas**, a list of available IDPs is presented. Select the Azure AD IDP configured previously in **Netvision Compas**.
1. You are redirected to Azure AD to perform the authentication. Once you are successfully authenticated, you should be automatically signed in to **Netvision Compas** for which you set up SSO.
188
+
150
189
## Additional resources
151
190
152
191
-[ List of Tutorials on How to Integrate SaaS Apps with Azure Active Directory ](https://docs.microsoft.com/azure/active-directory/active-directory-saas-tutorial-list)
0 commit comments