Overview
Single Sign-On (SSO) offers a seamless user experience by allowing employees to access multiple applications with just one set of credentials, reducing the hassle of remembering numerous passwords. This not only enhances security by minimizing the risk of password-related breaches but also enables centralized management of user authentication. Additionally, SSO simplifies IT administration, making it easier for organizations to manage access and enforce security policies efficiently.
How do I set up SSO on eloomi Infinite?
First, navigate to Admin > Integrations > SSO
Next, click on 'Get started' to see the following:
Once you choose your preferred provider (For purposes of the demonstration, we will focus on Entra AD) you will see the following:
Fields A, B, and C will all be pre-filled out. Clicking any of the fields will copy the information. Keep in mind that you cannot manually change any of the fields mentioned.
Note: "azuread.eloomi.io" is an example. In your case, it will be a GUID that can be used to connect multiple eloomi URLs to SSO.
After you select your provider, open Azure Active Directory navigate to "Enterprise applications" select "New application", then proceed to "Create your own application"
Provide the name of the new integration (e.g. "eloomi") and select to "Integrate any other application you don't find in the gallery"
Click Create
With the new application created, you can fill in the necessary details.
In the Sidebar > Single sign-on
On the Single sign-on tap, select SAML.
On the Set up Single Sign-On with SAML tap, Click Edit
Use A and B and C from step 4.
Once you fill in the necessary information, as shown above, your configuration should look like this:
โ
Confirm everything looks correct then save the changes scroll down to "SAML Certificates" and copy the value of "App Federation Metadata Url"
Enter metadata URL into the modal (D) to finish setup
Note:
You will need to grant people access to the eloomi app on your Azure AD tenant for them to be able to use SSO on the eloomi Infinite platform
If you get a "Platform [NUMBER] doesn't have set sso options." error, this is because the the system is still finalising the settings. Try again in about 10 minutes
Keep In Mind SSO REQUIRED
If you set 'SSO Required' to ON, people can only log in via SSO.
If you set 'SSO Required' to OFF, people not in your Active Directory will still have the option to log in by standard method by providing a username and password.
In case you run into any challenges or have questions, feel free to reach out to our Support Team via the eloomi Support Hub.
โ