RemedyForce/SalesForce Idp Configuration

Michael A Grady mgrady at unicon.net
Sat Jul 26 16:38:46 EDT 2014


I
On Jul 26, 2014, at 12:04 PM, Cantor, Scott <cantor.2 at OSU.EDU> wrote:

> On 7/25/14, 5:43 PM, "Ben Branch" <BBranch at uco.edu> wrote:
> 
>> All,
>> 
>> This is my very first service to configure in Shibboleth and I am really
>> struggling to understand what exactly I need to do to set this service up
>> properly.  The documentation for Salesforce doesn¹t seem to give any
>> clear indication as to what attribute needs to be sent to them (outside
>> of what they request for Just-In Time Provisioning), and what that
>> attribute name needs to be.

If this is Salesforce, you control that, because Salesforce provides an administrative web interface to control various aspects of your integration with them. (At least they do with a client I've worked with. I'd assume they make that available to every organization using one of their services.) And that includes configuring using SAML to login, where *you* specify the attribute to be sent, and how (i.e. as attribute or NameID).  Of course, that needs to match whatever you've used if you are pre-provisioning users. 

They have an reasonably extensive guide at:

 http://help.salesforce.com/help/pdfs/en/salesforce_single_sign_on.pdf

 with stuff about setting it up for your IdP starting near the bottom of page 13.
 

--
Michael A. Grady
Senior IAM Consultant, Unicon, Inc.



More information about the users mailing list