Skip to main content

SSO/SAML Setup: PingOne for Enterprise

Note: DataGrail only supports connections with SAML v2.0.

PingOne Enterprise: SAML Configuration

  1. Admin login to PingOne for Enterprise: https://admin.pingone.com/

  2. Create the SAML Application

    1. Navigate to Applications > My Applications > SAML
    2. Press Add Application > New SAML Application

Screen_Shot_2021-06-07_at_2.26.54_AM.png Screen_Shot_2021-06-07_at_2.26.58_AM.png

  1. Application Details:
  • Name: DataGrail
  • Description: YourCompanyName,Privacy Platform, DSAR fulfillment
  • Category: Compliance
  • Graphics: DG Logo.png [see attached in email]

Screen_Shot_2021-06-07_at_2.28.28_AM.png

  1. Application Configuration

    1. Required Fields:
      1. Signing Certificate: PingOne Account Origination Certificate
      2. Protocol Version: SAML 2.0
      3. Assertion Consumer Service (ACS): https://[yourdomainhere].datagrail.io/saml/auth
        1. Example: if DataGrail was installing this saml solution to host our own platform login, the above url would be https://datagraildemo.datagrail.io/saml/auth
      4. Entity ID: https://[yourdomainhere].datagrail.io/saml/metadata
        1. Example: if DataGrail was installing this saml solution to host our own platform login, the above url would be https://datagraildemo.datagrail.io/saml/metadata
      5. Application URL: https://[yourdomainhere].datagrail.io
        1. Example: if DataGrail was installing this saml solution to host our own platform login, the above url would be https://datagraildemo.datagrail.io
      6. Signing: Sign Response
      7. Signing Algorithm: RSA_SHA256
      8. Force Re-authentication: true (checkbox)
    2. Default (leave alone)
      1. Single Logout Endpoint:
      2. Single Logout Response Endpoint:
      3. Single Logout Binding Type:

Screen_Shot_2021-06-07_at_2.30.55_AM.png

  1. SSO Attribute Mapping

  2. Add new attribute

Screen_Shot_2021-06-07_at_2.31.03_AM.png

  1. Group Access

    1. Add appropriate groups for access
  2. Review Setup

    1. Ensure data is correct
    2. Ensure the SAML Metadata URL is an .xml file
    3. Finish
  3. Copy SAML Metadata URL and provide tosupport@datagrail.io

Disclaimer: The information contained in this message does not constitute as legal advice. We would advise seeking professional counsel before acting on or interpreting any material.