STEP 2: Configuring SAML Authentication for cybozu.cn
Enable SAML authentication for cybozu.cn and configure information of the Identity Provider (IdP).
Steps
-
Click the gear-shaped menu button in the header.
-
Click Users & System Administration.
-
Click Login.
-
Select "Enable SAML authentication".
-
Enter "Login URL" (SSO endpoint URL of the Identity Provider).
-
Enter "Logout URL" (URL redirected to, after logout from cybozu.cn).
-
Click Browse under "Register certificate" and select a public key certificate file.
-
Click Save.
Supported Certificates
X.509 certificates generated using either the RSA or DSA algorithms are supported.
For RSA, you can use the following hush functions.
- SHA-1
- SHA256
Verifying Your SAML Authentication Configuration
Your SAML authentication configuration is complete when you can successfully perform the following actions:
- When you access cybozu.cn, you are authenticated by the IdP successfully and directed to a screen that appears for logged-in users.
- When you access cybozu.cn without logging in to the IdP, you are redirected to the IdP authentication screen.
- You can log out from cybozu.cn.
Logging Out
When You Failed to Configure SAML Authentication
Log in to cybozu.cn using the URL to skip SAML authentication and change the SAML authentication configuration.
URL to Skip SAML Authentication