Skip to main content
Skip table of contents

SAML Configuration for Ping Identity

LAST UPDATED: OCT 22, 2024

Overview

This guide provides step-by-step instructions for configuring SAML authentication between Ping Identity and D3 vSOC. It includes setting up the SAML app integration in Ping Identity, and enabling login via Ping Identity to D3 vSOC.

Procedure

Configure SAML in Ping Identity

  1. Login to your Ping Identity Portal.

  2. Click on the Administrators option on the left sidebar.

    Frame 1 (29)-20241023-020306.png
  3. Navigate to Applications > Applications, then click on the button.

    Frame 19 (5)-20241023-040506.png
  4. Click on the SAML Application button, then an application name, then click on the Configure button.

    Frame 3 (27)-20241023-021529.png
  5. Select the Manually Enter radio button, enter your D3 vSOC URL in the ACS URL field with /Login.aspx appended, enter your D3 vSOC URL (without /Login.aspx) in the Entity ID field, then click on the Save button.

    Frame 4 (26)-20241023-021857.png

READER NOTE

The inclusion of /login.aspx is mandatory for the ACS URLs field.

  1. (Optional) Click on the Access tab.

    Frame 5 (17)-20241023-022655.png
  2. (Optional) Click on the button.

    Frame 17 (8)-20241023-035704.png
  3. (Optional) Select the Must have admin role checkbox, select the appropriate groups to enable the use of Ping Identity, then click on the Save button.

    Frame 7 (29)-20241023-023304.png
  4. Setup attribute mapping.

    Frame 16 (12)-20241023-035555.png
    1. Navigate to the Attribute Mappings tab.

    2. Enable the application toggle.

    3. Click on the button.

      Frame 18 (9)-20241023-040048.png
    4. Select the Username option within the PingOne Mappings dropdown menu.

    5. Click on the Save button.

READER NOTE

Before proceeding, ensure that you have:

  • Created D3 user accounts (Organization Management > Users > + Add Users)

  • Reviewed the procedure for adding a new login method. Your new Ping Identity SAML login method must to be assigned to the appropriate D3 user accounts (Application Settings > Login Authentication > Users) after step 10 below.

  1. Copy over the required Ping Identity information to D3 vSOC.

    Frame 20 (7)-20241023-041307.png

a. Navigate to the Configuration tab.

b. Click on the Download Signing Certificate button, open the text file, then copy it over to the Certificate field in vSOC.

Frame 10 (23)-20241023-030409.png
Frame 11 (20)-20241023-030817.png

c. Click on the button for the Initiate Single Sign-On URL, then copy it over to the Target URL field in vSOC.

Frame 12 (21)-20241023-031037.png

d. Click on the button for the ACS URLs, then copy it over to the Assertion Consumer Service URL field in vSOC.

Frame 13 (23)-20241023-031437.png

Login to D3 vSOC via Ping Identity

  1. Click on the button for the Initiate Single Sign-On URL, then paste it in the address bar of your browser.

    Frame 21 (12)-20241023-041605.png
  2. Enter your Ping Identity username and password, then click on the Sign On button.

After successfully logging in to Ping Identity, you will be redirected to D3 vSOC.

Frame 15 (24)-20241023-032501.png

JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.