Ir para o conteúdo principal
Adaptive Planning
Configure SAML SSO Using PingOne

Configure SAML SSO Using PingOne

Provides instructions for configuring
Adaptive Planning
to accept SAML SSO tokens from your instance of PingOne. Your PingOne instance is an identity provider and
Adaptive Planning
is a service provider.

Prerequisites

  • A PingOne account with administrative permissions
  • An
    Adaptive Planning
    account with administrative permissions
  • A confirmation email from
    Adaptive Planning
    stating that SAML has been provisioned on your instance

Add
Adaptive Planning
to PingOne

  1. Log in to PingOne.
  2. Go to
    Applications > My Applications
    .
  3. Click
    Add New Application
    .
  4. Choose
    Search Application Catalog
    .
  5. In the search text box, enter
    Adaptive Planning
    .
  6. Select
    Adaptive Planning
    to start setting up the application.
  7. Download the SAML Metadata and open the SAML Metadata xml document from PingOne.
    ManageSAMLSSO_downloaded_metadata_XML_pingone-obf.png
  8. Copy the Identity Provider EntityID from the downloaded SAML Metadata XML document and use it in the
    Adaptive Planning
    Admin > SAML SSO Settings
    Identity Provider Entity ID field.
  9. Copy the IDP SSO URL (with Bindings-POST) from the downloaded SAML Metadata XML document. You will use this URL in
    Adaptive Planning
    when setting up the Identity Provider SSO URL field.
  10. From PingOne
    Download
    the
    Signing Certificate
    and save the certificate in a location you will remember.
  11. From
    Adaptive Planning
    , go to
    Admin > SAML SSO Settings
    screen, upload the PingOne signing certificate you downloaded.
  12. Click Save.
  13. Configure the entity ID in PingOne:
    1. In
      Adaptive Planning
      , copy the
      Adaptive Planning
      SSO URL found at the bottom of
      Admin > SAML SSO Settings
      screen.
    2. In PingOne, go to SAML Settings for the
      Adaptive Planning
      app and paste the URL in both the
      ACS URLS
      and
      Entity ID
      fields.
  14. From PingOne, copy the
    Initiate Single Sign-On (SSO) URL
    and paste it into a browser and attempt an SSO.
    After successfully testing your setup, you can enable SAML SSO for your users. See Enabling SAML SSO for all Users in Adaptive Planning.

SSO Into Excel Interface for Planning and OfficeConnect

After you've successfully configured and tested SAML SSO,
Excel Interface for Planning
and
OfficeConnect
users can sign in using only their usernames. They can leave the password field blank.
PingOne SAML SSO Limitation
Users who configure PingOne as their Identity Provider may need to reenter login credentials each time they connect to
Adaptive Planning
, including
OfficeConnect
and
Excel Interface for Planning
.