---
title: Creating a connection
description: To allow PingFederate to act as an identity provider (IdP) and manage users in Coupa, create a service provider (SP) connection.
component: coupa
page_id: coupa:setup:pf_coupa_connector_creating_a_connection
canonical_url: https://docs.pingidentity.com/integrations/coupa/setup/pf_coupa_connector_creating_a_connection.html
revdate: June 14, 2024
section_ids:
  steps: Steps
---

# Creating a connection

To allow PingFederate to act as an identity provider (IdP) and manage users in Coupa, create a service provider (SP) connection.

## Steps

1. In the PingFederate administrator console, create a new SP connection:

   **Choose from:**

   * For PingFederate 10.1 or later: Go to **Applications > Integration > SP Connections**. Click **Create Connection**.

   * For PingFederate 10.0 or earlier: Go to **Identity Provider > SP Connections**. Click **Create Connection**.

2. Configure the basic connection details with the Coupa quick connection template:

   1. On the **Connection Template** tab, click **Use a template for this connection**.

   2. In the **Connection Template** list, select **Coupa Provisioner**.

   3. On the **Metadata File** row, upload the `idp-metadata.xml` file that you saved in [Obtaining your Coupa (SP) metadata file](pf_coupa_connector_obtaining_your_coupa_sp_metadata_file.html). Click **Next**.

   4. On the **Connection Type** tab select the **Browser SSO Profiles** and **Outbound Provisioning** checkboxes. Click **Next**.

   5. On the **Connection Options** tab, click **Next**.

   6. On the **General Info** tab, in the **Connection Name** field, enter a name of your choosing. Click **Next**.

3. On the **Browser SSO** tab, configure your assertion creation settings and customize the defaults set by the metadata file.

   You can find more information in [Configuring IdP Browser SSO](https://docs.pingidentity.com/pingfederate/latest/administrators_reference_guide/help_spconnectionconfigtasklet_spbrowserssostate.html) in the PingFederate documentation.

4. On the **Credentials** tab, configure the connection credentials as shown in [Configuring credentials](https://docs.pingidentity.com/pingfederate/latest/administrators_reference_guide/help_spconnectionconfigtasklet_credentialsstate.html) in the PingFederate documentation. Click **Next**.

5. On the **Outbound Provisioning** tab, configure provisioning with the following details.

   Learn more in [Configuring outbound provisioning](https://docs.pingidentity.com/pingfederate/latest/administrators_reference_guide/help_spconnectionconfigtasklet_saasprovisioningstate.html) in the PingFederate documentation.

   1. On the **Target** tab, enter the API key and subdomain you noted in [Obtaining required information](pf_coupa_connector_obtain_required_information.html).

   2. (Optional) In the **Provisioning Options** section, customize the provisioning connector behavior. Click **Next**.

   3. Go to **Manage Channels > Attribute Mapping** tab and at the bottom of the attribute list, click **Refresh Fields** to get fields and specifications from your Coupa site.

   4. Complete the attribute mappings by referring to the [Attribute index](pf_coupa_connector_attribute_index.html).

      For help, reference [Managing channels](https://docs.pingidentity.com/pingfederate/latest/administrators_reference_guide/help_saasmanagementtasklet_saasmanagementstate.html) in the PingFederate documentation.

6. On the **Activation and Summary** tab, above the **Summary** section, click the toggle to turn on the connection. Click **Save**.
