Skip to main content

Enabling SAML single sign-on for your organization

Enable SSO for your Organization

Z
Written by Zachary Allen
Updated over 8 months ago

SSO requires the Enterprise tier of Mindsmith contact us if you'd like to enable it for your organization.

Mindsmith allows you to sign in through your organizations Identity Provider using SAML SSO.

Note: Identity Provider Initiated authentication is not currently supported.

Also note: User provisioning is manual, users may sign in using the SSO provider but must be invited to the organization and assigned a license to be a part of the organization.

You'll typically begin by setting up a new application inside of your Identity provider once you've created download the Metadata XML. You can get Mindsmith service provider information here

Start by going to the security tab of Mindsmith. You'll only see this tab if you have the role of admin in an organization of a tier of Enterprise

Then click configure SSO and paste your the SAML metadata from your Identity Provider

Then add the domains that you'd like to associate with that provider. Only those with the provided domains will be able to sign in with Single Sign On.

The rest of the process takes place inside of your Identity Provider, ensure the proper access controls. Mindsmith uses a self hosted instance of BoxyHQ's Jackson to manage SAML SSO. For mapping information and vendor specific guides you can visit this documentation.

Did this answer your question?