Overview

If you have a lot of employees that will be accessing Expiration Reminder, it can be an administrative pain to manage this accounts when users enter or leave the company. To help you managing this overhead we have Single Sign-On.

An account with SSO enabled will allow your users to login with one set of credentials.

Setting up SSO requires some technical knowledge so we suggest speaking to your internal IT team for their assistance in providing the necessary information for the SAML configuration.

Configuring SSO

To configure SSO in your Expiration Reminder account, on the top menu click on Your Account and then select Manage.

er-single-sign-on-1

In the Manage screen, click on Configure SSO/SAML.

er-single-sign-on-2

In the SSO screen configure the following fields:

  1. Issuer: this is usually the metadata url provided by your directory provider. If possible, Expiration Reminder will try to get the sign on url, the sign out url and the certificate automatically from this metadata url.
  2. Single Sign On (SSO) url: this is the url users will be redirected to for login in.
  3. Single Log Out (SLO) url: this is the url provided by your Identity Provider for signing out.
  4. X.509 certificate: this is the certificate provided by your Identity Provider to authenticate the login request.
  5. Enable for Users: This will allow users in Expiration Reminder to be able to use SSO to login to the application. They’ll still be able to use their own Expiration Reminder password if they’d like to.
  6. Enfoce SSO login: This option will prevent users from using their Expiration Reminder password to login and will force them to use the credentials from the Identity Provider.

er-single-sign-on-3

Click Update to save your settings.