Steps to configure SAML SSO for Bluescape

About Bluescape

Bluescape is a cloud-based visual collaboration platform designed to enhance teamwork, planning, and decision-making across various industries, including defense, architecture, media, and enterprise sectors. Bluescape offers a secure, scalable workspace that facilitates real-time collaboration among dispersed teams.

The following steps will help you enable SSO for Bluescape from Identity360.

Prerequisites

  1. The MFA and SSO license for Identity360 is required to enable SSO for enterprise applications.
  2. Log in to Identity360 as an Admin, Super Admin, or Technician with a role that has Application Integration and Single Sign-on permissions.
  3. Navigate to Applications > Application Integration > Create New Application, and select Bluescape from the applications displayed.
    Note: You can also find Bluescape from the search bar located at the top.
  4. Under the General Settings tab, enter the Application Name and Description.
  5. Under the Choose Capabilities tab, select Single Sign-on and click Continue.
    Identity360 application configuration General Settings.General Settings of SSO configuration for Bluescape
  6. Under the Integration Settings tab, enter the Account ID and Unique ID fields with any temporary placeholder values, and click Save.
    Identity360 application configuration Integration SettingsIntegration Settings of SSO configuration for Bluescape.

Bluescape (service provider) configuration steps

  1. Contact Bluescape Support and inform them that you want to set up SSO for your organization.
  2. Provide the Bluescape Support team with the contact email address of your SSO administrator and the metadata URL value. You can obtain the metadata URL by following these steps.
  3. The Bluescape Support team will provide you with the following URLs. Copy these values, which will be used during Identity360 configuration.
    Note: These URLs contain placeholders for the <customer_saml_provider_name>, <acs_id>, <saml_id>, and <identity_provider_name>, because they have not been generated yet.
  4. Have a member log in to the test organization using the SSO URL provided by support.
    Note: A test organization is a temporary environment created by the support team to validate your SSO configuration. Once you confirm that SSO works as expected in this environment, the same setup will be enabled in your production organization.
  5. If the login is successful, provide Bluescape support with permission to apply the SSO setup to the actual organization.

Identity360 (identity provider) configuration steps

  1. After receiving the email response from the Bluescape support team, we need to update the SP values in Identity360 SSO configuration.
  2. Go to Applications > Application Integration. Click edit icon on Bluescape.
  3. From General Settings, click Continue.
  4. In the Account ID field, update the ACS URL value copied from step 3 of Bluescape configuration. For example, if the ACS URL is https://identity-api.apps.us.bluescape.com/api/authenticate/123-456-789, then the Account ID will be 123-456-789.
  5. In the Unique ID field, update the Entity ID value copied from step 3 of Bluescape configuration. For example, if the Entity ID is https://portal.apps.us.bluescape.com/saml/metadata/987-654-321, then the Unique ID will be 987-654-321.
  6. Enter the Relay State parameter, if necessary.
    Note: Relay State is an optional parameter used with a SAML message to remember where you were or to direct you to a specific page after logging in.
  7. Click Save.
    Identity360 application configuration.Integration Settings of SSO configuration for Bluescape.
  8. To learn how to assign users or groups to one or more applications, refer to this page.

Your users will now be able to sign in to Bluescape through the Identity360 portal.

Note: For Bluescape, both IdP- and SP-initiated flows are supported.

Steps to enable MFA for Bluescape

Setting up MFA for Bluescape using Identity360 involves the following steps:

  1. Set up one or more authenticators for identity verification when users attempt to log in to Bluescape. Identity360 supports various authenticators, including Google Authenticator, Zoho OneAuth, and email-based verification codes. Click here for steps to set up the different authenticators.
  2. Integrate Bluescape with Identity360 by configuring SSO using the steps listed here.
  3. Now, activate MFA for Bluescape by following the steps mentioned here.

How does MFA for applications work in Identity360?

  SSO Integration flow diagram  

Don't see what you're looking for?

  •  

    Visit our community  

    Post your questions in the forum.

     
  •  

    Request additional resources  

    Send us your requirements.