You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/active-directory/saas-apps/sailpoint-identitynow-tutorial.md
+28-5Lines changed: 28 additions & 5 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -9,7 +9,7 @@ ms.service: active-directory
9
9
ms.subservice: saas-app-tutorial
10
10
ms.workload: identity
11
11
ms.topic: tutorial
12
-
ms.date: 11/21/2022
12
+
ms.date: 06/28/2023
13
13
ms.author: jeedes
14
14
15
15
---
@@ -124,11 +124,34 @@ In this section, you'll enable B.Simon to use Azure single sign-on by granting a
124
124
125
125
## Configure SailPoint IdentityNow SSO
126
126
127
-
To configure single sign-on on **SailPoint IdentityNow** side, you need to send the downloaded **Certificate (Base64)** and appropriate copied URLs from Azure portal to [SailPoint IdentityNow support team](mailto:[email protected]). They set this setting to have the SAML SSO connection set properly on both sides.
127
+
1. In a different web browser window, sign in to your SailPoint IdentityNow company site as an administrator.
128
+
129
+
1. Go to **Global -> Security Settings -> Service Provider** make the following configuration changes.
130
+
131
+
[](./media/sailpoint-identitynow-tutorial/configuration.png#lightbox)
132
+
133
+
a. Enable Remote Identity Provider.
134
+
135
+
b. In the **Entity ID** field, paste **Entity ID** value, which you have copied from the Azure portal.
136
+
137
+
c. In the **Login URL for Post** field, paste **Login URL** value, which you have copied from the Azure portal.
138
+
139
+
d. In the **Login URL for Redirect** field, paste **Login URL** value, which you have copied from the Azure portal.
140
+
141
+
e. In the **Logout URL** field, enter the value `https://<IDN Tenant>.login.sailpoint.com/signout`.
142
+
143
+
f. In the **SAML Request Attribute** section, select the following values.
g. In the **Signing Certificate**, click on **Import** to upload the downloaded **Certificate (Base64)** from Azure portal.
128
151
129
152
### Create SailPoint IdentityNow test user
130
153
131
-
In this section, you create a user called Britta Simon in SailPoint IdentityNow. Work with[SailPoint IdentityNow support team](mailto:[email protected]) to add the users in the SailPoint IdentityNow platform. Users must be created and activated before you use single sign-on.
154
+
In this section, you create a user called Britta Simon in SailPoint IdentityNow. Work with[SailPoint IdentityNow support team](mailto:[email protected]) to add the users in the SailPoint IdentityNow platform. Users must be created and activated before you use single sign-on.
132
155
133
156
## Test SSO
134
157
@@ -144,8 +167,8 @@ In this section, you test your Azure AD single sign-on configuration with follow
144
167
145
168
* Click on **Test this application** in Azure portal and you should be automatically signed in to the SailPoint IdentityNow for which you set up the SSO.
146
169
147
-
You can also use Microsoft My Apps to test the application in any mode. When you click the SailPoint IdentityNow tile in the My Apps, if configured in SP mode you would be redirected to the application signon page for initiating the login flow and if configured in IDP mode, you should be automatically signed in to the SailPoint IdentityNow for which you set up the SSO. For more information about the My Apps, see [Introduction to the My Apps](https://support.microsoft.com/account-billing/sign-in-and-start-apps-from-the-my-apps-portal-2f3b1bae-0e5a-4a86-a33e-876fbd2a4510).
170
+
You can also use Microsoft My Apps to test the application in any mode. When you click the SailPoint IdentityNow tile in the My Apps, if configured in SP mode you would be redirected to the application sign-on page for initiating the login flow and if configured in IDP mode, you should be automatically signed in to the SailPoint IdentityNow for which you set up the SSO. For more information about the My Apps, see [Introduction to the My Apps](https://support.microsoft.com/account-billing/sign-in-and-start-apps-from-the-my-apps-portal-2f3b1bae-0e5a-4a86-a33e-876fbd2a4510).
148
171
149
172
## Next steps
150
173
151
-
Once you configure SailPoint IdentityNow you can enforce session control, which protects exfiltration and infiltration of your organization’s sensitive data in real time. Session control extends from Conditional Access. [Learn how to enforce session control with Microsoft Defender for Cloud Apps](/cloud-app-security/proxy-deployment-aad).
174
+
Once you configure SailPoint IdentityNow you can enforce session control, which protects exfiltration and infiltration of your organization’s sensitive data in real time. Session control extends from Conditional Access. [Learn how to enforce session control with Microsoft Defender for Cloud Apps](/cloud-app-security/proxy-deployment-aad).
0 commit comments