DESKPRO UPSSO SAML INTEGRATION GUIDE
This document provides the instructions for setting up UPSSO as a Third Party IDP to DeskPro application using SAML protocol.
Administrator access to the UPSSO portal.
Administrator access to the DeskPro application.
DOWNLOADING THE IDP CERTIFICATE
Login into the UPSSO portal as an administrator.
Click on “IDP Resources” from the left-side navigation menu.
Click on the “DOWNLOAD IDP Certificate”.
Save the file.
CONFIGURING UPSSO IN DeskPro
Login into the DeskPro application as administrator.
Click on Admin option on the left side navigation menu.
3. Click on Agents and select Auth and SSO option.
4. Scroll down and select add SAML authentication in the options menu.
5. Enter the IDP configuration details from the meta data file downloaded in the above steps.(DOWNLOADING THE IDP CERTIFICATE)
Under Login Enter :
Single Sign On URL : https://<YOUR_UPSSO_DOMAIN_NAME>/upsso/upsso-service
Under Logout Enter :
Single Log Off URL : https://<YOUR_UPSSO_DOMAIN_NAME>/upsso/logout
Enter XML metadata URL : https://<YOUR_UPSSO_DOMAIN_NAME>/upsso/get-idp-metadata
Upload the Certificate downloaded from ,”DOWNLOADING THE IDP CERTIFICATE”
6. Click on Save button to save save the configuration.
CONFIGURING DeskPro in UPSSO
Login into the UPSSO portal as an administrator
Click on the “Application Management” from the left-side navigation menu.
Click on the “+ New Record” button. And click the Saml Application.
4. Click on the “DeskPro” icon.
5. Please enter your company specified deskpro helpdesk domain name :
6. Click SAVE button.
TESTING THE SAML INTEGRATION
Logout of UPSSO and DeskPro applications if already logged in.
Login into UPSSO portal.
Once logged in as a user , click on deskpro icon
Select the 2FA method and enter the OTP and verify the user.
User will be logged into the DeskPro application.
How to ByPass SSO
The administrators can bypass the SSO by accessing the Deskpro URL : https://<YOUR_DESKPRO_DOMAIN>.deskpro.com/app#/
Only the administrator can access above URL.
The Non-Admin users can only login through SSO