Skip to end of metadata
Go to start of metadata

Problem:


We want to configure the SAML-integration with our ADFS. Which instructions do we have to follow?



Solution:


  1. Add a new Relying Party Trust
  2. Import Process Manager metadata. Please choose your correct system platform:
    1. EMEA-System: https://editor.signavio.com/api/v2/saml/v2/tenant/<workspace ID>/metadata
    2. AU-System: https://app-au.signavio.com/api/v2/saml/v2/tenant/<workspace ID>/metadata
    3. US-System: https://app-us.signavio.com/api/v2/saml/v2/tenant/<workspace ID>/metadata
      (Replace the placeholder <workspace ID> with the workspace ID of your tenant. You can find the workspace ID in the Process Manager Explorer > Help > Workspace information.)
  3. Create a new outgoing claim rule, which will send LDAP attributes as claims. For this purpose, map the following outgoing claim types to LDAP attribute:

    LDAP-AttributeOutgoing Claim Type
    Given Namefirst_name
    Surnamelast_name
    E-Mail Addressesemail
    SAM-Account-NameName Id (from the drop-down menu)
  4. Once the configuration on both sides has been completed, you can test the SSO via this URL (Please choose the appropriate infrastructure for your link)

    1. EMEA-System: https://<ADFS-SERVER>/adfs/ls/IdpInitiatedSignon.aspx?loginToRp=https://editor.signavio.com/api/v2/saml/v2/tenant/<workspace ID>/metadata

    2. AU-System: https://<ADFS-SERVER>/adfs/ls/IdpInitiatedSignon.aspx?loginToRp=https://app-au.signavio.com/api/v2/saml/v2/tenant/<workspace ID>/metadata

    3. US-System: https://<ADFS-SERVER>/adfs/ls/IdpInitiatedSignon.aspx?loginToRp=https://app-us.signavio.com/api/v2/saml/v2/tenant/<workspace ID>/metadata