Page created: 24 Jul 2019
|
Page updated: 9 Aug 2022
To allow PingFederate to handle single sign-on (SSO) to Zscaler Internet Access, create a service provider (SP) connection.
Note:
You can follow these steps to create a new connection, or you can modify your provisioning connection.
-
In the PingFederate
administrator console, create a new SP connection:
- For PingFederate 10.1 or later: go to Create Connection. . Click
- For PingFederate 10.0 or earlier: go to Create Connection. . Click
-
Configure the basic connection details
with the Zscaler Internet Access quick connection template:
- On the Connection Template tab, select Use a template for this connection.
- In the Connection Template list, select Zscaler ZIA Provisioner.
- In the Metadata File row, upload the zscaler-metadata.xml file that you saved in Getting SAML details from Zscaler. Click Next.
- On the Connection Type tab, select Browser SSO Profiles. Click Next.
- On the General Info tab, in the Connection Name field, enter a name for the connection. Click Next.
-
On the Browser SSO
tab, configure SSO as shown in Configuring IdP Browser SSO in the PingFederate
documentation, with the following details:
- On the Credentials tab, configure the connection credentials as shown in Configuring credentials in the PingFederate documentation. Click Next.
- On the Activation and Summary tab, above the Summary section, click the toggle to turn on the connection. Click Save.