Account configuration is available on the "Settings" tab of the account management page.
Configure SAML login in the "SAML Config" section of the "Settings" page.
To configure SSO with SAML follow these steps:
Toggle "Enable SAML authentication"
Keep "Enable user provisioning" on if you want users to be created on first login with SAML
Set the "Sign on URL" field value to the one provided by your SAML Identity Provider
Specify "Issuer" field, copying the issuer value from your SAML Identity Provider
Copy and paste your SAML Identity Provider's public certificate to the "Public certificate" field
Supported Identity Providers
We officially support these identity providers:
You can set up 'Fivetran' from app catalogs for these identity providers.
If you would like to see us offer official support for any other Identity Provider, please let us know and we will evaluate your request.
If you would like to try a SAML 2.0 compliant identity provider that we don’t support, you can attempt with these settings:
- ACS: https://fivetran.com/login/saml/return
- NameID: must be user's email
- Required custom attributes:
- FirstName - user's first name
- LastName - user's last name
Please note this method is not fully supported and may not work with an Identity Provider that does not support our requirements. If you run into issues we would be happy to evaluate adding official support for your Identity Provider.
Follow the instructions in the PingOne installation wizard. You have to configure custom attributes as shown in the screenshot below (no need to change any other app setting):