The walkthroughs below cover just a handful of the providers that are supported by Analytics’ platform. Specific steps and processes may differ, but the overall setup process is similar for most identity providers.
Okta
To configure single sign-on using SAML2.0 and Okta you must create a new Application within the Okta administrative portal, populate the appropriate configuration information from Analytics in Okta, copy and paste the Identity Provider XML file into Analytics and assign users.
Follow the instructions below to get started:
Log into Okta and then select Applications
Choose on Create App Integration
Within Create App Integration, highlight SAML 2.0 and then choose Next
In the General Settings tab, insert “Analytics” in the App name field. If you would like to add the Analytics logo, you can retrieve it from the Extras section of Analytics’ SSO Settings. Otherwise, select Next.
Select SAML Settings and enter the following fields for which the values are located in Analytics’ SSO Settings section:
Single sign on URL
Application URI (SP Entity ID)
Default RelayState
Choose Next at the bottom
On the Feedback tab, select “I’m an Okta customer adding an internal app” and choose Next.
On the Sign On tab, select Identity Provider Metadata to download the XML configuration file, open it using a text editor, and copy and paste into Identity Provider Metadata XML within Analytics’ SSO Settings.
Your application is now set up for SAML2 authentication. You may test your application using the dedicated sign-on URL which can be found on the SSO Settings section within Analytics. To enable Home Realm Discovery, mapping your business domain to your SSO provider, configure the Identifier-First Authentication section and make sure to disable username and password authentication under Email & Password Authentication.
OneLogin
To configure single sign-on using OneLogin, first add the SAML Test Connector to your Admin Portal at onelogin.com, then enter your custom organization settings. When your configuration is complete, copy and paste the metadata into your Analytics Organization Settings to complete your SSO setup.
Log into your OneLogin Admin Portal, then click Applications.
In the top right corner of the screen, select Add App.
Under Find Applications, enter SAML into the search bar, then select select SAML Test Connector.
For the Display Name, enter Analytics.
Upload the Analytics logos, available at the bottom of this page.
On the Default Project Access tab of Organization Settings, enable default project access for at least one project, then click Save. To test your SSO configuration, use the dedicated sign-on URL listed here.
Optional: Once your SSO configuration is tested and confirmed, disable Email & Password Authentication on the Email & Password Authentication tab of Organization Settings, here.