Save as PDF

PingIdentity SSO SAML Configuration

Overview

SAML Authentication is a paid add-on feature and must be enabled prior to use. Contact your account manager, or accountmanagers@responsive.io, to enable it.

Responsive uses the secure and widely adopted industry standard Security Assertion Markup Language 2.0 (SAML 2.0) and supports SAML Authentication as an add-on feature.

Our single sign-on (SSO) implementation integrates easily with any large identity provider that supports SAML 2.0.

Select the applicable tab for your edition of Responsive.

  • Configuring Responsive in the PingIdentity Portal

    1. Log in on the PingIdentity portal, then click Application Catalog on the left menu.
    2. Search for and select RFPIO, then click Next.
    3. Configure the default mapping attributes as shown, then click Next.
      Note: Responsive considers Email Address as an unique identifier and we expect the same in the SAML_SUBJECT. You can map more fields, if needed.
    4. Navigate to the Applications tab and select RFPIO from the list.
    5. Click Enable Advanced Configuration.
    6. Click Enable on the confirmation pop-up.
    7. Navigate to the Configuration tab and verify that the ACS URL and identity values are as follows:

      • ACS URL: https://app.rfpio.com/rfpserver/login/handle-saml-response
      • Entity ID: https://www.rfpio.com
    8. (Optional) To configure the IDP initiate Login, obtain the relay state value from the Responsive application and update it on the ACS URL as follows:
      1. In Responsive, go to Organization Settings > Security > SSO Settings and copy the Default Relay State value.
      2. In the PingIdentity portal, go to the Configuration tab and click the Edit icon on the top right of the screen.
      3. Paste the copied relay state after the existing value in the ACS URL field, so it reads as follows: https://app.rfpio.com/rfpserver/login/handle-saml-response/<copied relay state value>.
      4. Click Save to update the configuration.
    9. Click Download Metadata on the Configuration tab and save the file to your computer.
    10. In Responsive, go back to Organization Settings > Security > SSO Settings, then click Choose File and upload the metadata file.
    11. Click Submit once the file is uploaded. You can now login to Responsive with PingIdentity SSO.
  • Essentials features are subscription-based and may not be available for all users. Contact your account manager, or accountmanagers@responsive.io, for more details.

    Configuring Responsive in the PingIdentity Portal

    1. Log in on the PingIdentity portal, then click Application Catalog on the left menu.
    2. Search for and select RFPIO, then click Next.
    3. Configure the default mapping attributes as shown, then click Next.
      Note: Responsive considers Email Address as an unique identifier and we expect the same in the SAML_SUBJECT. You can map more fields, if needed.
    4. Navigate to the Applications tab and select RFPIO from the list.
    5. Click Enable Advanced Configuration.
    6. Click Enable on the confirmation pop-up.
    7. Navigate to the Configuration tab and verify that the ACS URL and identity values are as follows:

      • ACS URL: https://app.rfpio.com/rfpserver/login/handle-saml-response
      • Entity ID: https://www.rfpio.com
    8. (Optional) To configure the IDP initiate Login, obtain the relay state value from the Responsive application and update it on the ACS URL as follows:
      1. In Responsive, go to Organization Settings > Security > SSO Settings and copy the Default Relay State value.
      2. In the PingIdentity portal, go to the Configuration tab and click the Edit icon on the top right of the screen.
      3. Paste the copied relay state after the existing value in the ACS URL field, so it reads as follows: https://app.rfpio.com/rfpserver/login/handle-saml-response/<copied relay state value>.
      4. Click Save to update the configuration.
    9. Click Download Metadata on the Configuration tab and save the file to your computer.
    10. In Responsive, go back to Organization Settings > Security > SSO Settings, then click Choose File and upload the metadata file.
    11. Click Submit once the file is uploaded. You can now login to Responsive with PingIdentity SSO.

Was this article helpful?

/