User Manual

SSO

Single Sign-On (SSO) is an authentication solution that allows users to safely log in to numerous apps and websites with only one set of credentials.

To access QEval, SSO users only have to enter one set of credentials. It ensures that only authorized users get access to sensitive data.

If users wish to have SSO authentication to access QEval, with required rights, they can configure it themselves by providing required data.

Things users need to know:

  • SAML (Security Assertion Markup Language) is an XML-based standard for transferring authentication and authorization data between an identity provider (IdP) like Okta and a service provider (SP) like QEval, enabling Single Sign-On (SSO).
  • Users attempting to access a service provided by an SP (such as QEval) will no longer be requested to enter a username or password unique to the SP they are connecting into once it has been set to authenticate through SAML (e.g. a QEval username and password).
  • It will be verifying a user’s identification with the IdP using user credentials (such as a password), a SAML-configured service confirms the user’s identity with the IdP assuming that the user has previously entered login and password into the IdP.

To access this functionality, select SSO tab from the home page of QEval.

SSO Configuration page appears as shown below:

To configure the SSO, follow the steps in accordance with the numberings highlighted in the below screen:

 

SSO Target URL: Enter the target URL for sign-in requests. The identity provider uses this URL. It’s the location where the service provider delivers its authentication request and the user is verified.

  1. SSO Issuer URL: Enter the issuer URL. Issuer refers to the URL that uniquely identifies your SAML identity provider.
  2. SSO Assertion URL: This field will only display the assertion URL. The Assertion URL, also known as the Assertion Consumer Service (ACS) URL, is a service provider endpoint to which the identity provider’s authentication response will be redirected. This is a non-editable field.
  1. SSO Certificate: The SSO uses certificates to set up a SAML trust relationship between the SSO identity provider and service provider.

Enter a valid SSO Certificate.

  1. Once the above fields are updated, click Submit.

Once the SSO is all set up, the login screen of QEval will be displayed with the configured SSO Login button as shown below:

Once the authorized user clicks on the SAML Login button, the system will redirect to the SSO Target URL, where the user configured on the SSO page.

Enter the SSO credentials to sign in.

(Visited 14 times, 1 visits today)
Scroll Up

    ×

    Contact Us