miniOrange JSM SSO Feature Guide

This document outlines the miniOrange SAML/OAuth SSO for JSM Customers use cases and a complete guide of each tab like Organization Mapping, Portal Access Mapping, Custom Field Mapping and related capabilities available in the app for Jira Service Management. These features enable automated organization assignment, access control, and seamless customer portal SSO directly from your Identity Provider (IDP).

Organization Mapping

The Organization Mapping feature lets you automatically assign customers to the correct JSM organization during SSO — based on email domains, IDP groups, bulk CSV imports, or dynamic IDP attributes (On-the-Fly mapping).

Domain-Based Organization Mapping 1.1 Domain-Based Organization Mapping

You can map customers from specific customer domains to a corresponding JSM organization using the Organization Mapping> feature, specifically via domain-based mapping under the Manual Configuration tab.

This allows automatic assignment of customers to the appropriate JSM organization based on their email domain, streamlining the onboarding and segmentation process.

To configure this, simply define the customer domain and link it to the required JSM organization as shown below.

Domain-Based Organization Mapping under Manual Configuration

For Example:

A user with xyz.com email trying to login to the customer portal via SSO. If xyz.com is mapped to the XYZ organization, the user will be automatically added to the XYZ JSM organization after successful SSO. You can also assign multiple email domains to 1 JSM Organization. For eg. The ymail.com and abc.com domain will be assigned to DevOrg JSM Organization.

If another user with abc.com (who was previously in XYZ organization) logs in, they will be removed from the XYZ organization, ensuring accurate mapping.

This ensures users from a specific domain are always associated with the correct Jira organization.

Domain-Based Organization Mapping under Manual Configuration

IDP Group-Based Organization Mapping 1.2 IDP Group-Based Organization Mapping

External customers can be assigned to JSM organizations based on their Identity Provider (IDP) groups.

This can be configured using the Organization Mapping feature. You simply specify the relevant IDP group and link it to the desired JSM organization, enabling automatic synchronization of customers into the appropriate organization based on their group membership.

You can refer the screenshot below.

IDP Group-Based Organization Mapping configuration

For Example:

The Development_Group will be mapped to DevOrg JSM Organization as shown in the screenshot below.

IDP Group-Based Organization Mapping configuration

CSV Import for Bulk Organization Mapping 1.3 CSV Import for Bulk Organization Mapping

If you would like to bulk import configurations or mapping, then you can import it via CSV file instead of manually setting them up.

CSV Import for Bulk Organization Mapping

Dynamic Organization Creation Based on IDP Attributes 1.4 Dynamic Organization Creation Based on IDP Attributes (On-the-Fly Mapping)

Create JSM Organizations based on IDP Attributes. If you do not have predefined mappings to JSM organizations and want to create JSM organizations dynamically based on the customer's Organization IDP attributes then you can do so with the help of On the Fly mapping tab in the Organization Mapping section.

To retrieve the Organization Attribute name, go to SSO Configuration, click Test Connection for the selected IdP, and review the attributes returned in the response. There, you will find the Organization attribute name and its corresponding value like in the image shown below.

Test Connection results showing Organization attribute

Based on the IDP Attribute Name (Organization) you then need to map it to the Organization Attributes field and then accordingly decide which projects you want them to give access to.

On the Fly mapping tab configuration

The check box ensures that the existing customers will not be removed from the existing JSM organizations and will also be included in the new organizations based on the organization attribute set.


Did this page help you?

miniOrange Atlassian Contact Us

Book a Free Consultation with
Our Experts Today!

Schedule a call now!


Contact Us