Single Sign-On with OneLogin

IDrive® e2 users can access their accounts using Single Sign-On (SSO). Administrators can choose a SAML 2.0 identity provider (IdP) to enable login to IDrive® e2 without the need to remember an additional password.

To set up Single Sign-On (SSO) with OneLogin, the admin needs to:

Create an app on OneLogin Console

To use OneLogin as an identity provider for SSO, you need to create an app on the OneLogin console.

To create the app,

  1. Sign in to the OneLogin console using your OneLogin credentials.
  2. Click 'Administration' to view the admin console.
  3. Go to 'Applications'.
    Select Application
  4. Click 'Add App' or search for 'IDrive® e2', then click the app to add.
    Search Application
  5. Click 'Save' to add the IDrive® e2 to your Application list.
    Add Logo
  6. Click 'SSO' and click 'View Details' to download the certificate.
    Download Certificate
  7. Copy the 'Issuer URL' and SAML 2.0 Endpoint (HTTP).
    Copy URL

Assign users to the app

To enable SSO for user accounts, the admin needs to assign users to the app created on the OneLogin console.

To assign users to the OneLogin app,

  1. Navigate to the OneLogin admin console and select 'Users' from the top menu.
    Select Users
  2. Select an existing user or click 'New User' to add a new profile, then click 'Save User.'
    Select User and click save
  3. In the user profile, go to the 'Applications' and click Add Icon to select the app from the drop-down list, and click 'Continue'.
    Click Continue
  4. Verify the 'NameID value' and click 'Save'.
    Note: The 'NameID value' needs to be an email address.
    Verify and Save

Configure IDrive® e2 for Single Sign-On (SSO)

An admin needs to provide the received SAML URLs and Certificate in the SSO section of IDrive® e2.

To configure SSO,

  1. Sign in to IDrive® e2 via web browser.
  2. Navigate to the 'Dashboard' > 'Settings' > 'Single Sign-On (SSO)'.
  3. Enter a name for your SSO profile.
  4. Enter the Issuer URL and SSO Endpoint.
  5. Upload the X.509 certificate received from your IDP.
    Note: X.509 certificate should only be in X.509 certificate should only be in .pem, .txt, .cer, and .cert format.
  6. Click 'Configure Single Sign-On'

You will receive an email when SSO is enabled.