Articles in this section

OneLogin SAML Connection Overview

Setting up OneLogin SAML SSO with Spekit? This guide provides a general overview of what the SAML SSO connection process involves. 

⚠️ Important: This guide provides a general overview of the SSO connection process and should not be used as a step-by-step configuration guide. To set up SSO with Spekit, go to the Connect page within your Spekit Web App and proceed through the in-app setup walkthrough.

 

📌 Quick-Jump Topics

 

Step 1: Create a SAML Application

How do I create the SAML application in OneLogin?

  1. Log in to the OneLogin Admin Dashboard.
  2. Select the Applications tab in the top navigation bar.

Select Applications in the OneLogin dashboard

  1. Click Add App in the top-right corner.
  2. Search for and select SAML Custom Connector (Advanced) as the application type.

Applications page in the OneLogin dashboard

 

Step 2: Configure SAML Settings

How do I configure the SAML settings in OneLogin?

  1. Click the Configuration tab from the left sidebar.

Configuration tab in the OneLogin dashboard

  1. Copy the ACS URL Validator value from your Spekit in-app walkthrough and paste it into the corresponding field.

ACS URL Validator field in the OneLogin dashboard

  1. Copy the ACS URL value from your Spekit in-app walkthrough and paste it into the corresponding field.

ACS URL field in the OneLogin dashboard

  1. Ensure the SAML Initiator is set to OneLogin.
  2. Ensure the SAML Signature Element is set to Assertion.
  3. Optionally, enter https://app.spekit.co/app/generate as the Login URL.

SAML Initiator and Signature Element settings in OneLogin

💡 Tip: Setting the Login URL is optional but recommended as it provides a direct entry point for users logging into Spekit via SSO.

 

Step 3: Configure Parameters

How do I map user attributes for the SAML assertion?

  1. Click the Parameters tab from the left sidebar.
  2. Add the required fields and their mapped values as specified in your Spekit in-app walkthrough.
  3. For each attribute pair, ensure the Include in SAML assertion checkbox is checked.

User attributes setup in the OneLogin dashboard

 

Step 4: Upload the Metadata File to Spekit

How do I download the SAML metadata file and upload it to Spekit?

  1. Click the SSO tab from the left sidebar.
  2. Click More Actions in the top-right corner.
  3. Select SAML Metadata. An XML file will download to your computer.
  4. Upload this XML file into the corresponding step of your Spekit in-app SSO walkthrough.

Download SAML Metadata file in the OneLogin dashboard

ℹ️ What's next? After uploading the metadata file, you can test the configuration in the next step of the in-app walkthrough. From there:

  • If you plan to use JIT (Just-in-Time) user provisioning, you are done but you must notify Spekit Support that you will be using this provisioning type.
  • If you plan to use SCIM provisioning, a separate SCIM walkthrough is available in Spekit for you to complete.

 

Was this article helpful?
0 out of 0 found this helpful