SSO integration configuration is done with both PingOne and OpsRamp. The configuration sets up redirects to the custom branded URL.
Prerequisites
- Partners must register with OpsRamp to get OpsRamp login credentials.
- Provide your custom branding URL (such as
<yourwebsitename>.opsramp.com
).
Step 1: Create a certificate
- From the PingOne console, select the SETUP tab and click Certificates.
- Click +Certificate to create a new certificate.
- From the Create New Certificate screen, enter the required details and click Save.
Step 2: Create an application
From the PingOne console, select the Applications tab and click My applications.
Click the SAML tab.
From the Add Application drop-down options, select New SAML application.
Enter the application information and click Continue to Next Step.
From the Application Configuration screen, enter the information and click Continue to Next Step:
- Assertion Consumer Service (ACS): https://
.opsramp.com/samlResponse.do - Entity ID: https://
.opsramp.com - Application URL: https://
.opsramp.com
- Assertion Consumer Service (ACS): https://
Enter information for SSO attribute mapping and click Continue to Next Step.
Enter Group Access and click Continue to Next Step.
Do the following from the Review SetUp screen:
- Click Download on Signing Certificate and from the
.cer
file, save the certificate. - Click Download on SAML Metadata and copy the entityID URL. For example: If the entityID URL is
<md:EntityDescriptor entityID="https://pingone.com/idp/sandbox.opsramp"ID="g7r1YVie-iqysV037OuX9rIpUDO" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata">
, the issuer URL ishttps://pingone.com/idp/sandbox.opsramp
. - Copy Initiate Single Sign-On (SSO) URL.
- Click Download on Signing Certificate and from the
Click Finish to save the configuration.
Step 3: OpsRamp configuration
From All Clients, select a client.
Go to Setup > Integrations > Integrations.
From Available Integrations, select SSO > PingIdentity and click Install.
Enter:
- Issuer URL: Identity provider Issuer URL
- Redirection URL: SAML EndPoints for HTTP
- Logout URL: URL for logging out
- Certificate: x.509 Certificate
Click Install.