Integrate Ping Identity SSO with Filecloud


Before completing the following procedures, configure Apache Web Server. See SSO Configuration Step 1 on the page SAML Single Sign-On Support for configuration instructions.


This article describes how to integrate PingOne as an SSO provider with FileCloud.

Configuration in Ping Identity portal

  1. Log in to the Ping Identity dashboard, and click the Connections icon in the navigation panel.
  2. Click Applications, then click the + button.
  3. In the right panel, click SAML Application.
  4. Name and save the application.


    The SAML Configuration screen appears in the right panel.
  5. Select Manually Enter, and fill in the fields as follows:
    ACS URLs:
    https://<your_filecloud_url>/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp

    Entity ID:
    https://<your_filecloud_url>/simplesaml/module.php/saml/sp/metadata.php/default-sp

  6. Click Save.
    Several tabs appear in the right panel.
  7. Select the Attribute Mappings tab, then click , and add the following attributes:

    Field name

    Flags

    Ping One Value

    givenName

    Include in SAML Assertion

    Given Name

    mail

    Include in SAML Assertion

    Email Address

    snInclude in SAML AssertionFamily Name
    uidInclude in SAML AssertionUser ID

  8. Click the Configuration tab.

  9. To get a copy of the metadata file associated with the configuration, click Download Metadata.
    Save the file so you can enter its contents into the FileCloud admin portal.

    Your application configuration is now complete.

  10. Click the Identities icon in the Ping Identity navigation panel.

  11. Click Users, and then add your users.

         

Configuration in Filecloud Admin portal

  1. In the admin portal, go to Settings > SSO.
  2. Enter the following information:

    Field Value
    IdP End Point URLEnter the value of Issuer Id:  ( Configuration tab → Issuer ID just below the "Download Metadata" button)
    IdP Username Parameteruid
    IdP Email Parametermail
    IdP Given Name ParametergivenName
    IdP Surname Parametersn  
    IdP MetadataCopy the contents of the metadata file downloaded above paste them here.

  3. If you want users to see the Ping Identity login after they click Login with SSO, scroll to the bottom of the screen and check Show the Idp Login Screen.
    If you want users to be directly logged into FileCloud after they click Login with SSO, do not check Show the Idp Login Screen.
  4. Click Save.

  5. Go to Customization > General > Login and check Show SSO Link and Show Login Options.


Log in to FileCloud using Single Sign-on with Ping Identity

  1. In the Filecloud User login page, the user chooses Login with SSO

    If you have checked Show the Idp Login Screen in the FileCloud SSO settings, the user is redirected to the Ping Identity login screen, and must click Sign On.

    Otherwise, the user is directly logged in to FileCloud.