Hello there!

Need Help? We are right here!

Support Icon
miniOrange Email Support
success

Thanks for your Enquiry. Our team will soon reach out to you.

If you don't hear from us within 24 hours, please feel free to send a follow-up email to info@xecurify.com

Search Results:

×

Configure JumpCloud as SAML IDP for SSO


miniOrange Identity Broker service solution enables cross protocol authentication. You can configure JumpCloud as an IDP for Single Sign-On (SSO) into your applications/websites. Here, JumpCloud will act as an Identity Provider (IDP) and miniOrange will act as a broker.

We offer a pre-built solution for integrating with JumpCloud, making it easier and quick to implement. Our team can also help you set up JumpCloud as SAML IDP to login into your applications.

Connect with External Source of Users


miniOrange provides user authentication from various external sources, which can be Directories (like ADFS, Microsoft Active Directory, OpenLDAP, AWS etc), Identity Providers (like Microsoft Entra ID, Okta, AWS), and many more. You can configure your existing directory/user store or add users in miniOrange.



Prerequisite:

  • You need an active JumpCloud organization and an account with administrator rights.
  • Before configuring JumpCloud, collect miniOrange SP metadata. You will upload it in JumpCloud to register miniOrange as the service provider (JumpCloud stays the identity provider).
  • Sign in to the miniOrange Admin Console.
  • Go to Identity Providers and click Add Identity Provider.
  • Under Choose Identity Provider, select SAML, then pick SAML Provider (search the catalog if it is not listed).
  • On SAML Identity Provider, click View metadata information to see SAML details for miniOrange as the service provider (see below).
  • JumpCloud as IDP: SAML Identity Provider, View metadata information

  • Click Download Metadata button. Keep this metadata file ready; you will use it to configure JumpCloud next.
  • JumpCloud as IDP: Download miniOrange SAML metadata file

Steps to setup JumpCloud as an IDP and miniOrange as SP for SSO login

1. Configure miniOrange as Service Provider (SP) in JumpCloud

  • Log in to your JumpCloud Administrator Console.
  • Click on Administrator Login.
  • Configure JumpCloud SSO (JumpCloud as IDP)

  • Login with your JumpCloud administrator Login credentials.
  • Configure JumpCloud SSO (JumpCloud as IDP)

  • Navigate to User Authentication >> SSO.
  • Configure JumpCloud SSO (JumpCloud as IDP)

  • Select the + in the upper left.
  • Configure JumpCloud SSO (JumpCloud as IDP)

  • Scroll down and click on Custom SAML App.
  • Configure JumpCloud SSO (JumpCloud as IDP)

  • Under General info tab, enter the following details:
  • Display Label Name Enter a label for Service Provider.
    Description Enter description for your application.
    Display option: Upload a logo of your SP or select a color under color indicator.
    Configure JumpCloud SSO (JumpCloud as IDP)

  • Under SSO tab, click on Upload Metadata under the Service Provider Metadata and upload the metadata file which you got from Prerequisites.
  • Configure JumpCloud SSO (JumpCloud as IDP)

    Attribute Mapping

  • Under SSO tab, scroll down to Attributes section and enter the following entities.
  • Service Provider Attribute Name JumpCloud Attribute Name
    First Name firstname
    Last Name lastname
  • To add more attributes click on add attributes.
  • Then click on save to save your application.
  • Configure JumpCloud SSO (JumpCloud as IDP)

    Configure JumpCloud SSO (JumpCloud as IDP)

  • To get the IDP metadata tick the application check box and click on export metadata.
  • Configure JumpCloud SSO (JumpCloud as IDP)

  • You have successfully configured JumpCloud as SAML IdP (Identity Provider) for achieving Single Sign-On.

2. Configure JumpCloud as Identity Provider (IDP) in miniOrange

  • Go to miniOrange Admin console and navigate to Identity Providers in the left navigation menu. Then, click on Add Identity Provider button.
  • Jumpcloud as IDP :  Add Identity Provider

  • In Choose Identity Provider, select SAML from the dropdown.
  • Jumpcloud as IDP :  Select SAML from dropdown

  • Search for SAML Provider.
  • Jumpcloud as IDP :  Search SAML

  • Click on Import IDP metadata.
  • Login using JumpCloud as IdP : IDP metadata

  • Choose an appropriate IDP name. Browse for the file we downloaded in the previous step and Click on Import.
  • Configuring JumpCloud as IdP: JumpCloud Import

  • Your IDP metadata details will be auto-filled.
  • Configuring JumpCloud as IdP : Single Sign-On (SSO) URL and x.509 Certificate

  • Click on Save.

3. Test Connection

  • Visit your Login Page URL.
  • Go to Identity Providers tab.
  • Search for your app, click the three dots in the Actions menu, and select Test Connection against the Identity Provider (IDP) you configured.
  • JumpCloud-IDP-TestConnection

  • On entering valid JumpCloud credentials (credentials of user assigned to app created in JumpCloud), you will see a pop-up window which is shown in the below screen.
  • SucessTestConn-JumpCloud-IDP

  • Hence your configuration of JumpCloud as IDP in miniOrange is successfully completed.

Note:

You can follow this guide, if you want to configure SAML/WS-FED, OAuth/OIDC, JWT, Radius etc



Configure Attribute Mapping

  • Go to Identity Providers.
  • Click the three dots in the Actions menu, and select Attribute Mapping against the Identity Provider (IDP) you configured.
  • JumpCloud Single Sign-On SSO Select and Configure Attribute Mapping


Maps information, such as email and username, during Just-In-Time (JIT) user creation. Email and Username attributes are necessary to create the user profile.

  • Click on the + Add Attribute button to add the attribute fields.
  • JumpCloud Single Sign-On SSO Map USER Attribute

  • Check the attributes in the Test Connection window from the previous step. Choose any attribute names you want to send to your application under Attribute Name sent to SP.
  • Enter the values of the attributes coming from IdP into the Attribute Name from IdP field on the Xecurify side.

EXTERNAL mappings help alter incoming attribute names before sending them to apps, ensuring that the data is in the correct format.

  • Click on the + Add Attribute button to add the attribute fields.
  • JumpCloud Single Sign-On SSO Map EXTERNAL Attribute

  • Check attributes in test connection window from last step. Enter the attribute names (any name) that you want to send to your application under Attribute Name sent to SP.
  • Enter the value of attributes that are coming from IdP into the Attribute Name from IdP field on the Xecurify side.

Configure Multiple IDPs:

You can follow this guide, if you want to configure multiple IDPs (Identity Providers) and give users the option to select the IDP of their choice to authenticate with.


External References

Want To Schedule A Demo?

Request a Demo
  



Our Other Identity & Access Management Products