You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/active-directory/saas-apps/boomi-tutorial.md
+25-15Lines changed: 25 additions & 15 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -12,9 +12,8 @@ ms.service: active-directory
12
12
ms.subservice: saas-app-tutorial
13
13
ms.workload: identity
14
14
ms.tgt_pltfrm: na
15
-
ms.devlang: na
16
15
ms.topic: tutorial
17
-
ms.date: 10/14/2019
16
+
ms.date: 02/07/2020
18
17
ms.author: jeedes
19
18
20
19
ms.collection: M365-identity-device-management
@@ -28,7 +27,7 @@ In this tutorial, you'll learn how to integrate Boomi with Azure Active Director
28
27
* Enable your users to be automatically signed-in to Boomi with their Azure AD accounts.
29
28
* Manage your accounts in one central location - the Azure portal.
30
29
31
-
To learn more about SaaS app integration with Azure AD, see [What is application access and single sign-on with Azure Active Directory](https://docs.microsoft.com/azure/active-directory/active-directory-appssoaccess-whatis).
30
+
To learn more about SaaS app integration with Azure AD, see [What is application access and single sign-on with Azure Active Directory](https://docs.microsoft.com/azure/active-directory/manage-apps/what-is-single-sign-on).
32
31
33
32
## Prerequisites
34
33
@@ -42,6 +41,7 @@ To get started, you need the following items:
42
41
In this tutorial, you configure and test Azure AD SSO in a test environment.
43
42
44
43
* Boomi supports **IDP** initiated SSO
44
+
* Once you configure the Boomi you can enforce session controls, which protect exfiltration and infiltration of your organization’s sensitive data in real-time. Session controls extend from Conditional Access. [Learn how to enforce session control with Microsoft Cloud App Security](https://docs.microsoft.com/cloud-app-security/proxy-deployment-any-app).
45
45
46
46
## Adding Boomi from the gallery
47
47
@@ -78,16 +78,22 @@ Follow these steps to enable Azure AD SSO in the Azure portal.
1. On the **Set up single sign-on with SAML** page, enter the values for the following fields:
81
+
1. On the **Basic SAML Configuration** section, if you have **Service Provider metadata file** and wish to configure in **IDP** initiated mode, perform the following steps:
82
82
83
-
a. In the **Identifier** text box, type a URL:
84
-
`https://platform.boomi.com/`
83
+
a. Click **Upload metadata file**.
85
84
86
-
b. In the **Reply URL** text box, type a URL using the following pattern:
> The Reply URL value is not real. Update the value with the actual Reply URL. Contact [Boomi Client support team](https://boomi.com/company/contact/) to get this value. You can also refer to the patterns shown in the **Basic SAML Configuration** section in the Azure portal.
87
+
b. Click on **folder logo** to select the metadata file and click **Upload**.
c. After the metadata file is successfully uploaded, the **Identifier** and **Reply URL** values get auto populated in Basic SAML Configuration section.
92
+
93
+

94
+
95
+
> [!Note]
96
+
> You will get the **Service Provider metadata file** from the **Configure Boomi SSO** section, which is explained later in the tutorial. If the **Identifier** and **Reply URL** values do not get auto polulated, then fill in the values manually according to your requirement.
91
97
92
98
1. Boomi application expects the SAML assertions in a specific format, which requires you to add custom attribute mappings to your SAML token attributes configuration. The following screenshot shows the list of default attributes.
93
99
@@ -153,9 +159,11 @@ In this section, you'll enable B.Simon to use Azure single sign-on by granting a
153
159
154
160
c. In the **Identity Provider Login URL** textbox, put the value of **Login URL** from Azure AD application configuration window.
155
161
156
-
d. As **Federation Id Location**, select **Federation Id is in FEDERATION_ID Attribute element** radio button.
162
+
d. For **Federation Id Location**, select the **Federation Id is in FEDERATION_ID Attribute element** radio button.
163
+
164
+
e. Copy the **AtomSphere MetaData URL**, go to the **MetaData URL** via the browser of your choice, and save the output to a file. Upload the **MetaData URL** in the **Basic SAML Configuration** section in the Azure portal.
157
165
158
-
e. Click **Save** button.
166
+
f. Click **Save** button.
159
167
160
168
### Create Boomi test user
161
169
@@ -188,7 +196,7 @@ In order to enable Azure AD users to sign in to Boomi, they must be provisioned
188
196
f. Click **OK**.
189
197
190
198
> [!NOTE]
191
-
> The user will not receive a welcome notification email containing a password that can be used to log in to the AtomSphere account because their password is managed through the identity provider. You may use any other Boomi user account creation tools or APIs provided by Boomi to provision Azure AD user accounts.
199
+
> The user will not receive a welcome notification email containing a password that can be used to log in to the AtomSphere account because their password is managed through the identity provider. You may use any other Boomi user account creation tools or APIs provided by Boomi to provision AAD user accounts.
192
200
193
201
## Test SSO
194
202
@@ -200,8 +208,10 @@ When you click the Boomi tile in the Access Panel, you should be automatically s
200
208
201
209
-[ List of Tutorials on How to Integrate SaaS Apps with Azure Active Directory ](https://docs.microsoft.com/azure/active-directory/active-directory-saas-tutorial-list)
202
210
203
-
-[What is application access and single sign-on with Azure Active Directory? ](https://docs.microsoft.com/azure/active-directory/active-directory-appssoaccess-whatis)
211
+
-[What is application access and single sign-on with Azure Active Directory? ](https://docs.microsoft.com/azure/active-directory/manage-apps/what-is-single-sign-on)
204
212
205
213
-[What is conditional access in Azure Active Directory?](https://docs.microsoft.com/azure/active-directory/conditional-access/overview)
206
214
207
-
-[Try Boomi with Azure AD](https://aad.portal.azure.com/)
215
+
-[What is session control in Microsoft Cloud App Security?](https://docs.microsoft.com/cloud-app-security/proxy-intro-aad)
216
+
217
+
-[Try Boomi with Azure AD](https://aad.portal.azure.com/)
0 commit comments