You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
> `<YourEntityID>` is the **Azure AD Identifier** copied from the **Set up OrgChart Now** section, described later in tutorial.
@@ -117,47 +120,13 @@ In this section, you'll enable B.Simon to use Azure single sign-on by granting a
117
120
118
121
## Configure OrgChart Now SSO
119
122
120
-
To configure single sign-on on **OrgChart Now** side, you need to send the downloaded **Federation Metadata XML** and appropriate copied URLs from Azure portal to [OrgChart Now support team](mailto:ocnsupport@officeworksoftware.com). They set this setting to have the SAML SSO connection set properly on both sides.
123
+
To configure single sign-on in OrgChart Now, follow the steps enumerated in the [SSO Configuration article](https://help.orgchartnow.com/en/topics/sso-configuration.html#configuring-sso-41334) on OrgChart Now's Help site.
121
124
122
125
### Create OrgChart Now test user
123
126
124
-
To enable Azure AD users to log in to OrgChart Now, they must be provisioned into OrgChart Now.
125
-
126
-
1. OrgChart Now supports just-in-time provisioning, which is by default enabled. A new user is created during an attempt to access OrgChart Now if it doesn't exist yet. The just-in-time user provisioning feature will only create a **read-only** user when an SSO request comes from a recognized IDP and the email in the SAML assertion is not found in the user list. For this auto provisioning feature you need to create an access group titled **General** in OrgChart Now. Please follow the below steps to create an access group:
127
-
128
-
a. Go to the **Manage Groups** option after clicking the **gear** in the top right corner of the UI.
129
-
130
-

131
-
132
-
b. Select the **Add** icon and name the group **General** then click **OK**.
133
-
134
-

135
-
136
-
c. Select the folder(s) you wish the general or read-only users to be able to access:
137
-
138
-

139
-
140
-
d. **Lock** the folders so that only Admin users can modify them. Then press **OK**.
141
-
142
-

143
-
144
-
2. To create **Admin** users and **read/write** users, you must manually create a user in order to get access to their privilege level via SSO. To provision a user account, perform the following steps:
145
-
146
-
a. Log in to OrgChart Now as a Security Administrator.
147
-
148
-
b. Click on **Settings** on the top right corner and then navigate to **Manage Users**.
149
-
150
-

151
-
152
-
c. Click on **Add** and perform the following steps:
153
-
154
-

155
-
156
-
1. In the **User ID** textbox, enter the User ID like **brittasimon\@contoso.com**.
157
-
158
-
1. In **Email Address** text box, enter the email of user like **brittasimon\@contoso.com**.
127
+
To enable Azure AD users to log in to OrgChart Now, they must be set up as a user in OrgChart Now, or **Auto-Provisioning** must be enabled in the [SSO Configuration](https://help.orgchartnow.com/en/topics/sso-configuration.html#configuring-sso-41334) panel.
159
128
160
-
1. Click **Add**.
129
+
If you do not wish to enable auto-provisioning at this time, you can manually add a user to OrgChart Now for SSO testing purposes. To do so, follow the steps enumerated in the [Creating a New User](https://help.orgchartnow.com/en/account-settings/manage-users.html#UUID-a921b00b-a5a2-3099-8fe5-d0f28f5a50b9_bridgehead-idm4532421481724832584395125038) section of the [Account Settings: Manage Users](https://help.orgchartnow.com/en/account-settings/manage-users.html) article.
0 commit comments