What is SSO?
Single Sign-On (SSO) refers to enabling a single set of credentials to access different applications. One password to rule them all (and in the darkness bind them?)
It's safer, saves your brain cells from having to remember an extra set of credentials, and makes it even easier to log in to Paperflite.
How does Paperflite enable Identity360 SSO?
Paperflite supports Identity360 SSO via SAML 2.0 Protocol.
How do I set up the Identity360 SSO for our account?
Step 1: Go to the Identity360 (make sure you’re logged in). Go to the Applications menu and click on the Custom Application button in the top right corner.
Step 2: Under general settings, fill in the mandatory details such as Application Name and Domain Name as shown in the image below. Click on the SSO option at the bottom to allow users to access applications directly from the Identity360 portal. Click on Continue to proceed.
Step 3: Under Integration Settings, Enter Paperflite’s Assertion Consumer Service URL and Entity details mandatorily as shown in the picture.
We’ve made it easy for you to complete this. Just copy and paste the below URLs
Assertion Consumer Service URL: https://auth.paperflite.com/saml/SSO
Entity ID: app.paperflite.com/
Note: Relay State is a URL that gets generated upon receiving the SSO ID from the metadata uploaded. Its purpose is to access the Paperflite application within the Identity360 portal.
For Paperflite, the Relay State format is as shown below:
https://app.paperflite.com/accounts/ followed by a
Step 4: Below these, you will see 2 more requisites -
Provider Settings
Metadata Details
In Provider Settings, change the SAML response from Signed Response to Unsigned Response, while the rest remains unchanged.
In Metadata details, you will be able to download metadata. Once you have extracted the XML file, kindly share it with the Paperflite team to help configure Single Sign-On on Identity360.
The application is now created and will be displayed under the Application Integration tab.
Step 5:You can now log into Paperflite through Identity360!
Note: Enabling Auto-Provisioning
Auto-Provisioning allows users in your Identity Provider (IdP) directory to access Paperflite seamlessly without manually entering credentials each time. By enabling this feature, users will be automatically provisioned upon login, ensuring a smoother sign-on experience. To set up Auto-Provisioning, we require your organization's domain name and the XML certificate. Once enabled, users will only need to input their first and last name upon first login, with the password field hidden for added security. Please contact support@paperflite.com to request this configuration, and we will handle the setup from the backend.
High Fives All Around! Single Sign On is now configured successfully for your app!
If you still have any questions, reach out to support@paperflite.com and we’ll be happy to answer them.