This article will walk you through the GoLinks Ping Identity SSO set up process.
Create a new app
To configure the integration of GoLinks into Ping Identity, you need to create a new application that will be added to your list of managed SaaS apps.
- Sign in to your Ping portal using your work email address.
- On the left sidebar, select “Connections”.
- On the “Applications” page, click on the plus sign to create a new application.
- For the application type, select “Web App” and “SAML” for the connection type.
Configure Ping Identity SSO
Create App Profile
- Enter “GoLinks” for the application name and write an optional description.
- For the icon, you can upload the icon that GoLinks Support sends you. This is optional, but it will make it easier for your users to identify the application. Once finished, click “Next” to continue to the second step.
Note: Leave the “Sign-on URL” empty so if a user tries to log in to GoLinks and is not logged in to Ping Identity, the sign-on URL will default to Ping Identity’s login page. Once the user logs in, they’ll be able to log into GoLinks.
Configure SAML
- For “Provide App Metadata”, click on “Manually Enter”.
- For the “ACS URLS”, enter the following: https://www.golinks.io/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp.
- Choose your own “Signing Key” or use the default “PingOneSSO Certificate”. Select “Sign Assertion”.
- Enter any “Signing Algorithm” you want such as “RSA_SHA256”.
- You can leave “Encryption” disabled.
- For the “Entity ID”, enter the following: “okta_sso_golinks”.
- Note: Do not change the value of the “Entity ID”.
- You can leave the fields for “SLO” empty and leave the default value for “SLO Binding”.
- For the “Subject NameID Format”, select “urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress”.
- Enter any value for the “Assertion Validity Duration” that’s 60 or above.
- For the “Target Application URL”, enter the following: https://www.golinks.io/saml.php
- After this, you can leave the rest of the options as is.
- Finally, select “Save and Continue” to continue to the last step.
Map Attributes
- You will need to add four SAML attributes:
- “saml_subject”: “Email Address” (Required)
- “email”: “Email Address” (Required)
- “firstName”: “Given Name”
- “lastName”: “Family Name”
- Once you add these attributes, click on “Save and Close” to create the new application.
Configure GoLinks SSO
To configure single sign-on on the GoLinks side, you need to send the downloaded Metadata XML to your GoLinks Customer Success Manager. They will work on setting up the SAML SSO connection to properly work on both sides.
Testing
After Golinks confirms the integration is completed, we will set up a brief call to test and make sure it works properly.