/ /

JumpCloud SSO identity provider SAML Setup Instructions

Updated 4 months ago

Log in to your admin console at https://console.jumpcloud.com/login/admin.

From the left-hand navigation menu, click SSO Applications.

Click the + Add New Application button.

Select Custom Application and click Next.

image.png

Choose SSO with SAML as the integration method, then click Next.

image.png

When prompted to "Select the features you would like to enable," select Manage Single Sign-On (SSO) and then click Configure SSO with SAML.

image.png

Click Next and then click Configure Applications.

image.png

On the configuration screen, enter the following details:

IDP URL (default): https://sso.jumpcloud.com/saml2/[YOUR JUMPCLOUD CONFIGURATION NAME HERE]

Attributes/User Attributes:

Service Provider Attribute Name: http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name

JumpCloud Attribute Name: email

Service Provider Attribute Name: http://schemas.xmlsoap.org/ws/2005/05/identity/claims/emailaddress

JumpCloud Attribute Name: email

image.png

Scroll down and configure the following:

  • IDP Entity ID: Set to your Osano Customer ID

  • SP Entity ID: urn:amazon:cognito:sp:us-east-1_7GtagkRKw

  • ACS URL (default): https://auth.osano.com/saml2/idpresponse

image.png

Ensure the Declare Redirect Endpoint switch is turned on.

image.png

Click Export Metadata and send the exported SSO metadata XML to Osano to complete the configuration of the https://my.osano.com web application client.

If JumpCloud is set up to authenticate multiple domains (e.g., abc.com and xyz.com), include those domain names in your communication to Osano to ensure continued access for all users.

Logging In

Our SSO provider, Amazon Cognito, does not support IDP initiated logins, however there is a workaround you can employ. Within your settings for the Osano login, please add https://my.osano.com/sign-in/ to the Login URL field. This will act as a bookmark to bring you to the sign in page where your SSO Login can happen.

Was this article helpful?
Subscribe to receive updates on this article