SAML With Google Apps as IdP for CompliSpace Products
CompliSpace supports the SAML 2.0 protocol.
CompliSpace technology supports this single sign-on experience as the integration of a SAML 2.0 compliant Identity Provider (IdP) you have already installed and have made operational.
Integrating with CompliSpace products using SAML 2.0 allows your directory to tell CompliSpace details about the user such as name and email address. It also has the advantage that access permissions in some CompliSpace products are controlled by your directory, allowing a single 'source of truth' without having to manage permissions separately inside the application.
CompliSpace technology works to provide support with the SAML protocol, however your Identity Provider (IdP) is a third-party product and therefore CompliSpace technology can not provide detailed support for the deployment, configuration, troubleshooting, best practices, etc. Issues and questions regarding your Identity Provider (IdP) will need to be directed to your vendor.
CompliSpace technology recommends that you engage a service provider like Student Net for your identity requirements. For those using Microsoft products, ADFS provides some level of SAML support.
Please review our Technical Notes and Implementation Journey (below) for more information about the steps required integrate with CompliSpace Products using SAML 2.0.
CompliSpace technology also supports the single sign-on experience via SAML with Google Apps as the IdP for CompliSpace Products - click here for more information.
Implementation Journey
Step | Details | Person Responsible | Key Links |
---|---|---|---|
1. | Client completes the SSO Form | Client | Link to Form |
2. | CompliSpace will provision relevant CompliSpace Products for SSO and create/configure clients proxy | CompliSpace | |
3. | CompliSpace will share with client the Metadata file | CompliSpace | |
4. | Client share their metadata with CompliSpace | Client | Technical Notes |
5. | Trust established | CompliSpace & Client | |
6. | CompliSpace will liase with client to establish user groups, PolicyPlus sections and site codes | CompliSpace & Client | |
7. | CompliSpace will liase with client to test SSO | CompliSpace & Client | |
8. | Once SSO testing is sucessfully completed, SSO switched on | CompliSpace & Client | |
9. | Client communicates to local users access availability | Client | Email template |