This guide provides the necessary steps to integrate your organization’s Identity Provider (IdP) with ObservePoint using the SAML 2.0 protocol. Successful configuration enables your team to sign in securely using their corporate credentials.
Getting Started
Prerequisites
Protocol Requirement: SAML 2.0 is the required protocol for this integration. Please confirm with your identity management team that your IdP is configured to support the SAML 2.0 specification.
Permissions: You must possess the requisite permissions to manage your Identity Provider (IdP) settings.
Delegation Option
To begin configuration, generate a unique, shareable link to grant your Identity Provider (IdP) Administrator temporary access to the SSO setup panel. Access can be immediately revoked. This link should only be shared with a verified member of your identity management team.
Self-Service Option
Alternatively, if you possess the requisite permissions to manage your IdP settings, you may initiate the self-service configuration process directly below.
Configuration Steps
1. Import Service Provider Metadata
Import the Service Provider (SP) Metadata XML into your Identity Provider (IdP), or use the provided Metadata Configuration URL if supported by your IdP platform.
2. Configure IdP Metadata URL
Enter the Federated Metadata URL from your IdP. This is the preferred method, enabling automatic metadata updates and reducing the risk of configuration-related downtime.
3. Update Service Provider Subdomain
If necessary, update the Service Provider (SP) Subdomain to reflect your organization's unique branding or designated instance name.
4. User Provisioning Policy
Determine how new user accounts will be managed upon successful SSO sign-in:
Auto-Provision New Users on SSO: Automatically create an [Application Name] account for any user signing in successfully via the Identity Provider (IdP).
Require Pre-Existing Accounts: Restrict SSO sign-in only to users who have an existing, pre-provisioned [Application Name] user account.
Validation and Finalization
5. Test SSO Functionality
Initiate a diagnostic test to validate the end-to-end functionality of the SSO configuration. The SSO test will open in a separate tab.
6. Complete Validation
Once validation is complete, return to SSO setup screen to finalize and enable the configuration.
Related SSO Help Documents
Below are documents that go into more detail on how to set up SSO with ObservePoint.

