Using SAML authentication to provide a single sign-on experience for your organisation’s users can enhance your users’ experience in using Teamgage.
Note that for users who only use Teamgage to submit their results and comments, we do not require authentication and so nothing will change. The users who will benefit from a SSO experience are Managers and Admins.
Once configuration is complete, when your organisation’s managers log in to Teamgage they will be asked to enter their email address, but will then be redirected to your SAML provider for authentication. If they are already authenticated with SAML, they should automatically be redirected back to Teamgage.
Configuring your Teamgage account for SSO proceeds in two phases:
Each phase consists of the following steps:
Step-by-step configuration guides are available for the following platforms:
Other SAML 2.0 Identity Providers can be set up using the configuration details below.
To connect to Teamgage, configure a new SAML 2.0 Application (or SP/Relying Party) in your Identity Provider as follows:
Metadata URL
Attributes
If you need to provide manual SAML SP configuration, the following additional details may be useful. This is also encoded in the metadata file (URL linked above).
Important: Manual configurations will require you to manually reconfigure the signing certificate from time to time. Please contact support to ensure that you are notified when we rotate to a new certificate.
Configuration Setting | UAT Value | Production Value |
---|---|---|
Entity ID Audience URI SP Issuer | https://uat.teamgage.com/Saml2 | https://www.teamgage.com/Saml2 |
Single Sign-on URL ACS Endpoint | POST https://uat.teamgage.com/Saml2/Acs | POST https://www.teamgage.com/Saml2/Acs |
Single Log-out URL | https://uat.teamgage.com/Saml2/Logout | https://www.teamgage.com/Saml2/Logout |
Signing certificate | uat.teamgage.com-saml-20??????.pem Available for download here | www.teamgage.com-saml-20??????.pem Available for download here |