Configure CSM with SSOCircle

SSOCircle provides a number of identity products and services, including a free identity provider service that can be used for testing SAML implementations (though this would not normally be used for production environments).

Note: CSM provides integration with third-party identify providers, not support. For more information about your SSOCircle setup, work with your SSOCircle Administrator.

To configure CSM with SSOCircle:

  1. Configure CSM as a SAML Service Provider (export the data to a service provider metadata file).
  2. Submit the CSM Service Provider metadata file to SSO (add it as a Relying Party):
    1. In your browser, navigate to www.ssocircle.com.
    2. Hover over Sign In/Register, and then select Login.
    3. Provide the User Name and Password, and then click Log In.

      Note: If an SSO Login account has not been created, create one by clicking Register. After receiving an e-mail to validate the account, copy the link in the e-mail to the address in a browser and go to that URL. There is now an account on SSO Circle.

    4. On the User Profile page, select Manage Metadata, and then select Add new Service Provider.

      A web page opens to enter service provider data.

    5. Type the URL where the CSM web services are located (possibly where web applications are installed).
    6. Open the Service Provider metadata file that was exported when configuring CSM as the service provider, copy all the text, and then paste the text into the metadata box on the web page.
    7. Click Submit.
  3. Configure SSO as a SAML Identity Provider (import the SSO Identity Provider metadata file into CSM):
    1. Open the SAML Settings Identity Provider page (CSM Administrator>Security>Edit SAML settings>Identity Provider).
    2. Click the Import Metadata button.

      The Select Metadata File Location window opens.

    3. In the open-file dialog, provide the URL: https://idp.ssocircle.com.

      Tip: The browser can also be used to go to this URL and after the metadata is displayed, save the page as an .xml file that can then be imported into CSM.

    4. Select E-mail Address as the type of ID to use.
      Note: For testing, set the e-mail address in one of the CSM User Profiles to the same e-mail address that was used above.
© Copyright 2018 Cherwell Software, LLC. All rights reserved.