Symptom
We want to configure the SAML-integration with our ADFS. Which instructions do we have to follow?
Resolution
- Add a new Relying Party Trust in your ADFS
- Import Process Manager metadata. You can download the metadata directly from the Process Manager Explorer under Setup > SAP Signavio Collaboration Hub Authentication > Download the SAML service provider metadata.
- Create a new outgoing claim rule that sends LDAP attributes as claims. For this purpose, map the following outgoing claim types to the LDAP attribute.
LDAP-Attribute Outgoing Claim TypeGiven Name Given Name first_name Surname last_name E-Mail Addresses email SAM-Account-Name Name ID (from the drop-down menu - As described in our user manual, please add the SAML metadata from your ADFS to the metadata field in the Process Manager.
- Please note that your request must be signed in ADFS with "Sign authentication request".
- Once the configuration on both sides has been completed, you can test the SSO via this URL (Please choose the appropriate infrastructure for your link)
https://<Signavio Instance>.signavio.com/p/hub?t=<Your workspace ID>
Keywords
sap signavio, saml, sso, configuration, adfs, Microsoft Active Directory Federation Services , KBA , BPI-SIG-CA-SEC-SAM , SAML 2.0 for SAP Signavio , How To
Product
SAP Signavio Process Manager all versions ; Signavio Process Manager all versions
SAP Knowledge Base Article - Public