Skip to content

Commit b75e226

Browse files
authored
Merge pull request #101726 from v-nagta/paylocityv
Product Backlog Item 900604: SaaS App Tutorial: Paylocity Update
2 parents 034f9ed + b0a5f6d commit b75e226

File tree

3 files changed

+22
-8
lines changed

3 files changed

+22
-8
lines changed
33.4 KB
Loading
4.19 KB
Loading

articles/active-directory/saas-apps/paylocity-tutorial.md

Lines changed: 22 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -12,9 +12,8 @@ ms.service: active-directory
1212
ms.subservice: saas-app-tutorial
1313
ms.workload: identity
1414
ms.tgt_pltfrm: na
15-
ms.devlang: na
1615
ms.topic: tutorial
17-
ms.date: 10/23/2019
16+
ms.date: 01/21/2020
1817
ms.author: jeedes
1918

2019
ms.collection: M365-identity-device-management
@@ -43,6 +42,8 @@ In this tutorial, you configure and test Azure AD SSO in a test environment.
4342

4443
* Paylocity supports **SP and IDP** initiated SSO
4544

45+
* Once you configure the Paylocity you can enforce session controls, which protect exfiltration and infiltration of your organization’s sensitive data in real-time. Session controls extend from Conditional Access. [Learn how to enforce session control with Microsoft Cloud App Security](https://docs.microsoft.com/cloud-app-security/proxy-deployment-aad).
46+
4647
## Adding Paylocity from the gallery
4748

4849
To configure the integration of Paylocity into Azure AD, you need to add Paylocity from the gallery to your list of managed SaaS apps.
@@ -79,8 +80,6 @@ Follow these steps to enable Azure AD SSO in the Azure portal.
7980

8081
1. On the **Basic SAML Configuration** section, the user does not have to perform any step as the app is already pre-integrated with Azure.
8182

82-
![Paylocity Domain and URLs single sign-on information](common/preintegrated.png)
83-
8483
1. Click **Set additional URLs** and perform the following step if you wish to configure the application in **SP** initiated mode:
8584

8685
In the **Sign-on URL** text box, type a URL:
@@ -96,14 +95,25 @@ Follow these steps to enable Azure AD SSO in the Azure portal.
9695

9796
| Name | Source Attribute|
9897
| ---------------| --------------- |
99-
| PartnerID | <"PartnerID"> |
100-
| PaylocityUser | <"PaylocityUser"> |
101-
| PaylocityEntity | <"PaylocityEntity"> |
98+
| PartnerID | `P8000010` |
99+
| PaylocityUser | `user.mail`|
100+
| PaylocityEntity | < `PaylocityEntity` > |
101+
102+
> [!NOTE]
103+
> The PaylocityEntity is Paylocity Company ID.
102104

103105
1. On the **Set up single sign-on with SAML** page, in the **SAML Signing Certificate** section, find **Federation Metadata XML** and select **Download** to download the certificate and save it on your computer.
104106

105107
![The Certificate download link](common/metadataxml.png)
106108

109+
1. On the **Set up single sign-on with SAML** page, in the **SAML Signing Certificate** section, click **Edit Icon**.
110+
111+
![The SAML Signing Certificate Edit](./media/paylocity-tutorial/edit-samlassertion.png)
112+
113+
1. Select **Signing Option** as **Sign SAML response and assertion** and click **Save**.
114+
115+
![The SAML Signing Certificate Edit](./media/paylocity-tutorial/saml-assertion.png)
116+
107117
1. On the **Set up Paylocity** section, copy the appropriate URL(s) based on your requirement.
108118

109119
![Copy configuration URLs](common/copy-configuration-urls.png)
@@ -160,4 +170,8 @@ When you click the Paylocity tile in the Access Panel, you should be automatical
160170

161171
- [What is conditional access in Azure Active Directory?](https://docs.microsoft.com/azure/active-directory/conditional-access/overview)
162172

163-
- [Try Paylocity with Azure AD](https://aad.portal.azure.com/)
173+
- [Try Paylocity with Azure AD](https://aad.portal.azure.com/)
174+
175+
* [What is session control in Microsoft Cloud App Security?](https://docs.microsoft.com/cloud-app-security/proxy-intro-aad)
176+
177+
* [How to protect Paylocity with advanced visibility and controls](https://docs.microsoft.com/cloud-app-security/proxy-intro-aad)

0 commit comments

Comments
 (0)