System Settings – SSO (SAML)

Configs

  • check_box Enable Single Sign-On
  • check_box Disable Password Authentication
  • IdP Configuration (Display when Single Sign-On is enabled)
    • format_list_bulleted
      • mode_edit_outline Entity ID *
      • mode_edit_outline Sign-in page URL *
      • mode_edit_outline Sign-out page URL
      • mode_edit_outline NameID format
      • arrow_drop_down Digest algorithm
        • SHA-1
        • SHA-256
        • SHA-512
      • arrow_drop_down Authentication lifetime
        • 2 Hours
        • 1 Day
        • 7 Days
        • 30 Days
        • Never
      • mode_edit_outline Verification Certificate *
  • SP Information
    • format_list_bulleted
      • Entity ID
      • ACS URL
      • Single Logout Service URL
      • Verification certificate

Capture

Notes

  1. Checking the [Enable Single Sign-On] checkbox will display the IdP settings and SP information.
  2. Copy the SP information (Entity ID, ACS URL, and Certificate) into the external IdP’s form or XML configuration file to register Questetra with the IdP.
  3. Once registration on the IdP side is complete, you will be provided with an Entity ID, Login Page URL, and Certificate. Enter these into the IdP settings in Questetra.
  4. After configuration, access the Questetra login URL and confirm that the SAML login button appears.
  5. Checking on [Disable Password Authentication] will prevent users from logging in to Questetra with a password. (Optional)
    • Users with administrator privileges can still log in with a password via the padlock icon on the login screen.
  • Multiple IdP certificates can be registered (enter multiple BEGIN CERTIFICATE–END CERTIFICATE blocks in sequence).
  • Once Single Sign-On is configured, [Login with Single Sign-On] will appear on the login screen.

See also

Discover more from Questetra Support

Subscribe now to keep reading and get access to the full archive.

Continue reading