Page created: 26 May 2021
|
Page updated: 14 Dec 2021
Learn how to enable UltiPro sign on from the PingFederate console (IdP-initiated sign on) and direct UltiPro sign on using PingFederate (SP-initiated sign on).
- Configure PingFederate to authenticate against an IdP or datastore containing the users requiring application access.
- Populate UltiPro with at least one user to test access.
- You must have administrative access to PingFederate.
-
Create a PingFederate SP
connection for UltiPro:
-
Add the PingFederate
connection to UltiPro:
- Contact UltiPro Customer Support and request that SAML 2 be enabled for your organization.
- Provide them with the downloaded PingFederate signing certificate and metadata.
- Request their ACS URL and EntityID values.
-
Update the ACS URL values in PingFederate:
- Sign on to the PingFederate administrative console.
- Edit the SP connection for UltiPro.
- Set Partner’s Entity ID to the UltiPro Entity ID value.
- In Protocol Settings: Assertion Consumer Service URL, set Endpoint URL to the UltiPro Assertion Consumer Service URL value.
- Save the changes.
-
Test the PingFederate
IdP-initiated SSO integration:
-
Test the PingFederate
SP-initiated SSO integration: