Your Prolaborate site should have a valid SSL Certificate.
If you don’t have a SSL Certificate, you can create a self-signed certificate yourself. Please get in touch with Prolaborate team to know more about it.
To configure the Service Provider i.e. Prolaborate, click on Menu → SAML Settings.
From the top right of the page that opens, click on Enable SSO.
Under Service Provider Configuration,
The following sections will elaborate the steps involved in setting up Prolaborate in Active Directory (AD).
To create a SAML application, follow the below steps:
Enter your Application Name (say Prolaborate) and Click on Add . Once successfuly added, the Overview page will open.
In this section, we will specify which AD users can access Prolaborate.
In Add Assignment page, click on Users and groups tab to select the users to whom to give access to Prolaborate and click on Select
Click on Assign
The users whom we have selected will now show up in Users and groups page.
Follow these steps to configure SAML Sign sign-on and get required information that are needed to configure from the Prolaborate side:
The subsequent sections will talk about how to complete the configuration.
Claim Name | Value |
---|---|
emailaddress | user.mail |
givenname | user.givenname |
name | user.displayname |
nameidentifier | user.userprincipalname |
surname | user.surname |
Step 4 can be ignored.
Step 5 can be carried out only after Identity Provider Configuration is done in Prolaborate.
Go back to Prolaborate, click on Menu → SAML Settings .
Fill the Identity Provider Configuration as per the instructions below:
This is the step 5 mentioned in SAML Single sign-on Configuration section.
Click on
Click on Sign in as current user.
You will be redirected to Prolaborate successfully if the configuration is done right as said in the document.
Note the Repositories you see will be based on Default Access Control Profile
Please check the configuration if you are not logged in to Prolaborate.
Click on Manage Profiles to create a new profile.
Click on Create Profile.
This is the permission that will be provided to all the users logging into Prolaborate using their SSO Crendentials.
Give a Name to the Profile and configure permissions.
You can choose any one of the following options:
Click Save.
Now, go back to SAML Settings page.
Select the newly created profile and click Save.
Once the configuration is done, your users will start to see a new button on the login page called Login with SSO .
When they click on Login with SSO,
They will be redirected to an URL as per configuration. They can then give their Azure AD credentials to login to Prolaborate.
When a user logs out from Prolaborate, the user will be logged out from all applications signed in using their SSO credentials.