Setting up SAML SSO for Adobe apps
FollowPre-check
To integrate Adobe's User API, you will need:
- An Adobe administrator account is required.
- You must be subscribed to an Enterprise Plan plan within your Adobe organization.
- You must own a domain that will be used by your Adobe organization.
- Adobe does not currently support IdP-initiated logins, only SP-initiated logins. ( Create a directory for a SAML-based identity provider Please refer to the document. )
outline
When you set up SAML SSO for your Adobe app instances, members of your Adobe organization who have been assigned Adobe app instances in PoPs can single sign on. For more information, see Please refer to the guide provided by Adobe
Verify IdP metadata at PoPs
- On the details page of your Adobe app instance in PoPs, go to the Integrations tab.
- Click [Set Connection Method].
- Select SAML as the connection method.
- Select [Download Metadata] to download the SAML IdP metadata of Megazone PoPs.
- Go to Adobe to verify the information to enter in the SP Entity ID input field and the ACS URL input field.
Setting up SAML in Adobe
-
Log in to Adobe with an account that has administrator rights, enter the Admin Console, and go to the [Settings] menu at the top.
-
Go to the ID menu, select [Other SAML Provider] in [Select an Identity Provider for Authentication], and click the [Next] button.
-
Copy and save the Adobe ACS URL and Entity ID displayed in Step 1 of the Create Directory dialog.
-
Upload the Megazone PoPs metadata file you downloaded in [Upload ID Provider Metadata File] in Step 2. Once the file is uploaded, click the [Next] button to proceed to Step 2.
- As the final step in creating your directory, choose whether to automatically create Federated ID accounts with Adobe if they don’t already have one, and then click Done. If you choose Active, Adobe will automatically create accounts for users who have email addresses with domains in that directory and log in with SSO authentication, based on the domain of their email addresses.
- To add the domain of the account to which you want to link SSO in the created directory, click the [Add domain via DNS credentials] button and then click the [Next] button.
- Enter the information you want to use as a domain and click the [Next] button to add the domain.
- In the Directory Details page > Domains tab, check that the status of the added domain is displayed as [Active].
-
Go to the Directory Details page > Authentication tab and click the [ Test] button to check if authentication is working properly.
-
If the directory status is displayed as follows in the Overview tab > the Directory Details page the SSO setup is complete.
Complete SAML setup by adding SP metadata in PoPs
- Return to the details page of the Adobe app instance in PoPs and enter the information confirmed by Adobe in [SP Entity ID] and [ACS URL] respectively.
- SP Entity ID: Entity ID copied from Adobe
- ACS URL: ACS URL copied from Adobe - Click [Save] to complete the settings.
Comments
0 comments
Please sign in to leave a comment.