SSO (Single sign-on) / SAML setup

FeatureHub SaaS comes with an option to setup SSO/SAML for your organisation. This is an optional setting that an organization owner (super admin) can configure for their account. You are not required to pay any extra amount for setting up SSO/SAML.

Azure AD SSO/SAML setup

  1. Create FeatureHub application in the "Enterprise Applications" page and go to the Single Sign-On setup screen. Azure-saml-featurehub

  2. Provide the following URls in the Basic SAML configuration section. Note, we used "banana" here as an example, this is usually your organisation name: Azure-saml-featurehub

  3. Provide the following additional details in Attributes & Claims section: Azure-saml-featurehub

  4. Make sure the correct option is selected for the certificate setting: Azure-saml-featurehub

  5. Copy the following URLs and a certificate and insert them in your FeatureHub Saml/SSO settings page. Suffix field is usually your organization name: Azure-saml-featurehub
    Azure-saml-featurehub
    Certificate example
    Azure-saml-featurehub

  6. Once you save the settings, copy the Sign In URL from the page, this will be where your users should go to sign in.
    Azure-saml-featurehub

Google IDP SAML/SSO setup

  1. Follow steps 1-5 here

  2. Provide the following details on the Google Identity Provider Page:

  3. Check the box: "Signed response"
    Google-sso-featurehub

  4. Provide additional information on the Name ID and EMAIL attributes
    Google-sso-featurehub

  5. Click on "Download metadata"
    Google-sso-featurehub

  6. In the opened window, copy SSO URL, Entity ID and Certificate
    Google-sso-featurehub
    Go to the FeatureHub app - SAML settings page and paste it to the FeatureHub SAML form for your organisation:
    Google-sso-featurehub
    If you don’t want to add users from your organisation with permissions to access FeatureHub app automatically, you can uncheck the box "Automatically add new registered users"

  7. Once you save the settings, copy the Sign In URL from the page, this will be where your users should go to sign in.