Skip to content

SSO: Not Quite All You Need to Know

SSO Docs

  • SSO Intro
  • SSO Integration Examples Guide
  • SSO Technical Guide

Class SSO

Enable as below in the "Old subscription page", then hand back to the customer.

Configuration Guides

Config From Scratch [WIP]

  1. To do 1
  2. To do 2

Config Changes [WIP]

  1. To do 1
  2. To do 2

IdP Switch [WIP]

Process overview:

  1. Create a new sub and testing project
  2. Add test user and SSO owner to testing project
  3. Add config for testing to Dynamic Config
  4. After testing is successful, remove old config

Updates for Dev

SUPs:

  • If testing is going to span over a deployment (e.g., the config is made on Friday and you need it for the next week), make a SUP and also post in #change-management on Slack (examples: search in:#change-management from:@Elijah Beale SSO)
  • Otherwise, make a SUP showing the change from old config to new. All changes should be highlighted with the actual XML in code snippets. Examples:
  • BAC-15043
  • BAC-15144
  • BAC-15245
  • Link back from #change-management

Change Management in Slack:

  • Basically list changes in the SUPs you made — or BACs created
  • Link to relevant SUP / BAC

SSO Errata

Azure

  • Azure SSO Provider Name / Login URL location: (stub — add link)
  • If you see the error below during an Azure / MS Entra ID SSO login attempt during testing, it means the entityId is missing a trailing forward slash (/):
exception_class="System.NullReferenceException"
exception_message="Object reference not set to an instance of an object."
exception_source="Itst.BL.Common.SamlAuthenticationServices.SamlService.ValidateSignature(Itst.Core.Common.Saml.Saml2Response samlResponse, Itst.Core.Common.Saml.SamlIdentityProvider idp)"
exception_stack_00="Itst.BL.Common.SamlAuthenticationServices.SamlService.ValidateSignature(Itst.Core.Common.Saml.Saml2Response samlResponse, Itst.Core.Common.Saml.SamlIdentityProvider idp)"
exception_stack_01="Itst.BL.Common.SamlAuthenticationServices.SamlService.ValidateSamlResponseAndGetClaims(Itst.Core.Common.Saml.Saml2Response samlResponse, System.String exceptedInResponseToStr)"
exception_stack_02="Itst.BL.Common.SamlAuthenticationServices.SamlService.VerifyResponse(System.String xml, System.String storedRequestKey)"