You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/active-directory/saas-apps/gainsight-tutorial.md
+37-35Lines changed: 37 additions & 35 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -37,9 +37,9 @@ To integrate Azure Active Directory with Gainsight, you need:
37
37
38
38
Before you begin the process of configuring single sign-on, you need to add the Gainsight application from the Azure AD gallery. You need a test user account to assign to the application and test the single sign-on configuration.
39
39
40
-
### Add Gainsight from the Azure AD gallery
40
+
### Add Gainsight SAML from the Azure AD gallery
41
41
42
-
Add Gainsight from the Azure AD application gallery to configure single sign-on with Gainsight. For more information on how to add application from the gallery, see the [Quickstart: Add application from the gallery](../manage-apps/add-application-portal.md).
42
+
Add Gainsight SAML from the Azure AD application gallery to configure single sign-on with Gainsight. For more information on how to add application from the gallery, see the [Quickstart: Add application from the gallery](../manage-apps/add-application-portal.md).
43
43
44
44
### Create and assign Azure AD test user
45
45
@@ -53,37 +53,7 @@ Complete the following steps to enable Azure AD single sign-on in the Azure port
53
53
54
54
1. In the Azure portal, on the **Gainsight** application integration page, find the **Manage** section and select **single sign-on**.
55
55
1. On the **Select a single sign-on method** page, select **SAML**.
56
-
1. On the **Set up single sign-on with SAML** page, select the pencil icon for **Basic SAML Configuration** to edit the settings.
57
-
58
-

59
-
60
-
1. On the **Basic SAML Configuration** section, perform the following steps:
61
-
62
-
a. In the **Identifier** textbox, type a value using one of the following patterns:
63
-
64
-
| **Identifier** |
65
-
| ------------- |
66
-
| `urn:auth0:gainsight:<ID>` |
67
-
| `urn:auth0:gainsight-eu:<ID>` |
68
-
69
-
b. In the **Reply URL** textbox, type a URL using one of the following patterns:
> These values are not real. Update these values with the actual Identifier, Reply URL and Sign on URL. Contact [Gainsight support team](mailto:[email protected]) to get these values. You can also refer to the patterns shown in the **Basic SAML Configuration** section in the Azure portal.
56
+
1. Provide any dummy url like (`https://gainsight.com`) in the **Identifier (Entity ID)** and **Reply URL (Assertion Consumer Service URL)** in **Basic SAML Configuration** in the Azure portal.
87
57
88
58
1. On the **Set-up single sign-on with SAML** page, in the **SAML Signing Certificate** section, find **Certificate (Base64)** and select **Download** to download the certificate and save it on your computer.
89
59
@@ -93,6 +63,8 @@ Complete the following steps to enable Azure AD single sign-on in the Azure port
93
63
94
64

95
65
66
+
1. Now on the Gainsight Side, Navigate to **User Management** and click on **Authentication** tab, create a new **SAML** Authentication.
67
+
96
68
## Setup SAML 2.0 Authentication in Gainsight
97
69
98
70
> [!NOTE]
@@ -108,7 +80,7 @@ Complete the following steps to enable Azure AD single sign-on in the Azure port
108
80
109
81
1. In the **User Management** page, navigate to **Authentication** tab and click **Add Authentication** > **SAML**.
110
82
111
-
[](media/gainsight-tutorial/authentication.png#lightbox)
83
+

112
84
113
85
1. In the **SAML Mechanism** page, perform the following steps:
114
86
@@ -120,17 +92,47 @@ Complete the following steps to enable Azure AD single sign-on in the Azure port
120
92
1. In the **Sign Out URL** textbox, paste the **Logout URL** value, which you have copied from the Azure portal.
121
93
1. Open the downloaded **Certificate (Base64)** from the Azure portal and upload it into the **Certificate** by clicking **Browse** option.
122
94
1. Click **Save**.
95
+
1. Reopen the new **SAML** Authentication and click on edit on the newly created connection, and download the **metadata**. Open the **metadata** file in your favorite Editor, and copy **entityID** and **Assertion Consumer Service Location URL**.
123
96
124
97
> [!Note]
125
98
> For more information on SAML creation, please refer [GAINSIGHT SAML](https://support.gainsight.com/Gainsight_NXT/01Onboarding_and_Implementation/Onboarding_for_Gainsight_NXT/Login_and_Permissions/03Gainsight_Authentication).
126
99
100
+
1. Now back to Azure portal, On the **Set up single sign-on with SAML** page, select the pencil icon for **Basic SAML Configuration** to edit the settings.
101
+
102
+

103
+
104
+
1. On the **Basic SAML Configuration** section, using the values obtained in the Step 4, perform the following steps:
105
+
106
+
a. In the **Identifier (Entity ID)** textbox, type a value using one of the following patterns:
107
+
108
+
| **Identifier** |
109
+
| ------------- |
110
+
| `urn:auth0:gainsight:<ID>` |
111
+
| `urn:auth0:gainsight-eu:<ID>` |
112
+
113
+
b. In the **Reply URL (Assertion Consumer Service URL)** textbox, type a URL using one of the following patterns:
0 commit comments