Set up single sign-on
The topics in this section are for tenants created on or after January 12, 2023. Refer to Application management migration FAQ. |
If the Sign On tab is visible, you can set up single sign-on for a target application. For more information, refer to Target and authoritative applications.
-
Click the Sign On tab.
-
Click Set Up SSO.
-
If you have set up multiple domains, in the Select a domain drop-down field, select a domain to use for sign-on.
-
Click Next.
-
On the Set Up Single Sign-on page:
-
To upload the application service provider metadata XML file:
-
Enable Upload Metadata.
-
Browse to and select the xml file that contains the service provider metadata.
-
-
To manually configure the service provider metadata values:
-
Enable Configure Manually.
-
Configure the fields on the Set Up Single Sign-on page.
-
-
-
Click Next.
-
Click Save.
-
To view IdP metadata for the application, click View IdP Metadata. This contains the x509 signing and encryption certificates.
-
To update the application provider metadata, click Update Metadata.
-
To download the x509 encryption certificate, click Download Certificate. For the x509 signing certificate, refer back to step 8.
-
To test the single sign-on connection, at the bottom right of the page, click Try it out.