Configuring SP-initiated SSO
About this task
SSO is initiated at the SP itself, rather than through PingOne for Enterprise or the IdP. The SP uses the PingOne for Enterprise SSO URL assigned to the IdP to redirect user authentication requests.
Steps
-
Configure the SP to initiate SSO.
Choose from:
-
If you’re using PingFederate as the SP:
-
Specify the
AuthenticatingIdpId
query parameter for the PingFederate/sp/startSSO.ping
endpoint.For example:
/sp/startSSO.ping?AuthenticatingIdpId=customer001.com
For more information, see .pingidentity.com/pingfederate/pf83/index.shtml//[SP services].
-
If you’re not using PingFederate as the SP:
-
Get the application SSO URL from the SP.
-
Add the application to the PingOne for Enterprise dock using this URL.
-
For instructions, see Add or update an application using its SSO URL.
-