You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The workflow and UI for the Adobe Admin Console has been updated. I updated that section to reflect the updated workflow and UI. The new workflow is greatly simplified and this should help all our users to integrate Azure AD and Creative Cloud. I also added a note right at the top, regarding a new Azure AD connector that greatly simplifies this setup.
# Tutorial: Azure Active Directory single sign-on (SSO) integration with Adobe Creative Cloud
24
24
25
+
> [!NOTE]
26
+
> This article describes Adobe Admin Console's custom SAML-based set-up for Microsoft Azure AD. For brand new configurations, it is recommended the you use the [Azure AD Connector](https://https://helpx.adobe.com/enterprise/using/sso-setup-azure.html), which can be set up within minutes and shortens the entire process of Domain Claim, SSO-setup, and user-sync.
27
+
25
28
In this tutorial, you'll learn how to integrate Adobe Creative Cloud with Azure Active Directory (Azure AD). When you integrate Adobe Creative Cloud with Azure AD, you can:
26
29
27
30
* Control in Azure AD who has access to Adobe Creative Cloud.
@@ -108,7 +111,7 @@ Follow these steps to enable Azure AD SSO in the Azure portal.
108
111
> [!NOTE]
109
112
> Users need to have a valid Office 365 ExO license for email claim value to be populated in the SAML response.
110
113
111
-
1. On the **Set up single sign-on with SAML** page, in the **SAML Signing Certificate** section, find **Certificate (Base64)** and select **Download** to download the certificate and save it on your computer.
114
+
1. On the **Set up single sign-on with SAML** page, in the **SAML Signing Certificate** section, find **Federation Data XML** and select **Download** to download the XML metadata file and save it on your computer.
@@ -148,31 +151,25 @@ In this section, you'll enable B.Simon to use Azure single sign-on by granting a
148
151
149
152
## Configure Adobe Creative Cloud SSO
150
153
151
-
1. In a different web browser window, sign-in to [Adobe Admin Console](https://adminconsole.adobe.com) as an administrator.
152
-
153
-
2. Go to **Settings** on the top navigation bar and then choose **Identity**. The list of domains opens. Click **Configure** link against your domain. Then perform the following steps on **Single Sign On Configuration Required** section. For more information, see [Setup a domain](https://helpx.adobe.com/enterprise/using/set-up-domain.html)
1. In a different web browser window, sign-in to [Adobe Admin Console](https://adminconsole.adobe.com) as a system administrator.
156
155
157
-
a. Click **Browse** to upload the downloaded certificate from Azure AD to **IDP Certificate**.
156
+
1. Go to **Settings**on the top navigation bar and then choose**Identity**. The list of directories opens. Click on the desired Federated directory.
158
157
159
-
b. In the **IDP issuer** textbox, paste the value of **Azure AD Identifier** which you copied from Azure portal.
158
+
1. On the Directory Details page, click **Configure**.
160
159
161
-
c. In the **IDP Login URL** textbox, paste the value of **Login URL** which you copied from Azure portal.
162
-
163
-
d. Select **HTTP - Redirect** as **IDP Binding**.
160
+
1. Copy the Entity ID and the ACS URL (Assertion Consumer Service URL or Reply URL) and enter these at the appropriate fields in the Azure portal.
161
+

164
162
165
-
e. Select **Email Address** as **User Login Setting**.
163
+
a. Use the Entity ID value Adobe provided you for **Identifier** on the **Configure App Settings** dialog.
166
164
167
-
f. Click **Save** button.
165
+
b. Use the ACS URL (Assertion Consumer Service URL) value Adobe provided you for **Reply URL** on the **Configure App Settings** dialog.
168
166
169
-
3. The dashboard will now present the XML **"Download Metadata"** file. It contains Adobe’s EntityDescriptor URL and AssertionConsumerService URL. Please open the file and configure them in the Azure AD application.
167
+
1. Towards the bottom of the page, upload the **Federation Data XML** file that you downloaded from the Azure AD portal.
170
168
171
-

169
+

172
170
173
-
a. Use the EntityDescriptor value Adobe provided you for **Identifier** on the **Configure App Settings** dialog.
171
+
1. Click **Save**.
174
172
175
-
b. Use the AssertionConsumerService value Adobe provided you for **Reply URL** on the **Configure App Settings** dialog.
176
173
177
174
### Create Adobe Creative Cloud test user
178
175
@@ -205,7 +202,7 @@ When you click the Adobe Creative Cloud tile in the Access Panel, you should be
205
202
206
203
-[Try Adobe Creative Cloud with Azure AD](https://aad.portal.azure.com/)
207
204
208
-
-[Set up a domain (adobe.com)](https://helpx.adobe.com/enterprise/using/set-up-domain.html)
205
+
-[Set up a Identity (adobe.com)](https://helpx.adobe.com/enterprise/using/set-up-identity.html)
209
206
210
207
-[Configure Azure for use with Adobe SSO (adobe.com)](https://helpx.adobe.com/enterprise/kb/configure-microsoft-azure-with-adobe-sso.html)
0 commit comments