Universal (SAML)

This guide will show you how to integrate GoodAccess with with any SSO provider supporting SAML.

This feature is available in Premium plan and higher.

You may set up Single Sign-On (SSO) in Control Panel > Settings > SSO & Identity.

Step 1

  1. Go to the settings of your identity provider and look for an option to add a new application.

  2. If asked for the sign-in method, select SAML (2.0).

  3. Name your application and choose a logo.

Step 2

When asked for SAML configuration, enter the details from GoodAccess - (2) GoodAccess links.

  • Identifier - Entity ID

  • Reply URL - Assertion Consumer Service URL

  • Sign on URL - Login URL

  • Relay State - Relay State

For User Attributes enter the following:

  • Name - Enter "email"

  • Name format - Choose "Unspecified"

  • Value/Source Attribute - Choose "user.mail"

Step 3

Add permissions for the application to an existing group within your identity provider or create a new one and assign users to it.

Step 4

Open your newly created application, look for SAML settings and copy the following details into GoodAccess - (3) Identity Provider Links.

  • SSO/Login URL - Sign in URL

  • Identifier/Issuer - Entity ID

  • Certificate - X509 signing certificate

Step 5

Now switch back to GoodAccess, click Continue, and Submit.

Last updated

Was this helpful?