Skip to main content

Enterprise Single Sign On (SSO/SAML) Support

ClearView Flex now supports SSO using your Identity Provider (IDP) via SAML authentication

Updated over 2 weeks ago

Using SAML authentication with your IDP (e.g., Google, O365, Okta) provides key security and management benefits: centralized login, easier user onboarding and off-boarding, enforced MFA and password policies through your IDP and no need for users to remember separate Flex credentials.

In order to get SAML enabled for your organization you'll need to carry out the following steps:

  1. As a ClearView Flex Administrator, you can request to enable SAML for all Flex users with emails in one or more domains they manage (e.g. @example.com) by emailing [email protected]. If you are not an administrator please reach out to your project admin to make the request.

  2. Sohonet Support will provide all the relevant SAML URLs etc

  3. With this information an App can be created in your IDP

  4. Once the App is setup, you will provide Sohonet with the IDP metadata file or the following information:

    1. IDP sign in URL for the app created above

    2. The public signing key for verifying SAML responses

  5. Sohonet Support will provide available windows to activate the connection

  6. Sohonet will enable SAML at agreed time at which point users with emails in the configured domain(s) will start being redirected to your IDP for authentication

  7. You can confirm the connection is working as expected and Sohonet can roll back if needed

Key notes about SAML setup: it must be enabled for an entire managed email domain (not per project) and currently applies only to ClearView Flex. User provisioning isn’t automatic (no SCIM or attribute mapping) and IdP-initiated logins aren’t supported at this time.

Did this answer your question?