Learning Center/OneLogin Documentation/Application Setup

Configuring SAML for Central Desktop

Christian Pedersen
posted this on February 10, 2011 09:26 am

To configure OneLogin to sign users into Central Desktop using SAML, follow those steps:

In OneLogin, do the following:

  1. Search for Central Desktop in the application catalog.
  2. Click Add. The following page is shown:

    cd-1.png
  3. In the Authentication method section, choose SAML
  4. Type your Central Desktop subdomain name and choose which roles should get access to Central Desktop
  5. Click Update. The page refreshes and the following is shown:

    cd-2.png

  6. Click the clipboard icon next to SAML Login URL to copy the URL to your clipboard.

In Central Desktop, do the following:

  1. In the top right corner, click Account, then Company Setup.
  2. Click the Advanced tab, and then the Single Sign On link.

    Screen_shot_2011-02-24_at_3.03.16_PM.png

  3. Complete the fields SSO URL and SSO Logout URL as shown above. 
  4. In the field SSO Login URL, paste the SAML Login URL you previously copied into your clipboard. 
  5. In OneLogin, click Security the SAML and copy the SHA-1 fingerprint. Paste that into the field SSO Certificate Fingerprint in Central Desktop
  6. Enable SAML SSO by checking Enable SAMLv2 Single Sign On.
  7. Click "Update" to save the setting.  

To test do the following:

  1. Login to OneLogin.
  2. Click the Central Desktop icon on your dashboard. This should log you into Central Desktop.

If you're not using the same username (email address) in Central Desktop as in OneLogin, do the following:

  1. Click Apps, then Company Apps
  2. Edit the Central Desktop application. 
  3. In the sidebar, click Edit logins
  4. Locate your user and click Edit
  5. Notice that the User name field is blank. This is because it's defaulting to your OneLogin username, which is your email address.
  6. To user a different email address with Central Desktop, type it in the User name field and click Update.
  7. Click "Apps" and re-test by clicking the "Central Desktop" icon. 

You're done!