Universal (SAML)

This guide will show you how to integrate GoodAccess with with any SSO provider supporting SAML.

circle-info

This feature is available in Premium plan and higher.

triangle-exclamation

You may set up Single Sign-On (SSO) in Control Panel > Settings > SSO & Identityarrow-up-right.

Step 1

  1. Go to the settings of your identity provider and look for an option to add a new application.

  2. If asked for the sign-in method, select SAML (2.0).

  3. Name your application and choose a logo.

Step 2

triangle-exclamation

When asked for SAML configuration, enter the details from GoodAccess - (2) GoodAccess links.

  • Identifier - Entity ID

  • Reply URL - Assertion Consumer Service URL

  • Sign on URL - Login URL

  • Relay State - Relay State

For User Attributes enter the following:

  • Name - Enter "email"

  • Name format - Choose "Unspecified"

  • Value/Source Attribute - Choose "user.mail"

Step 3

Add permissions for the application to an existing group within your identity provider or create a new one and assign users to it.

Step 4

Open your newly created application, look for SAML settings and copy the following details into GoodAccess - (3) Identity Provider Links.

  • SSO/Login URL - Sign in URL

  • Identifier/Issuer - Entity ID

  • Certificate - X509 signing certificate

Step 5

Now switch back to GoodAccess, click Continue, and Submit.

Last updated

Was this helpful?