Steps to configure SAML SSO Projector
PSA
About Projector PSA
Projector PSA is a cloud-based professional services automation (PSA) platform designed to help
service-oriented organizations manage their projects, resources, and finances efficiently. It offers
capabilities such as time and expense tracking, resource scheduling, project accounting, and real-time
analytics.
The following steps will help you enable SSO for Projector PSA from Identity360.
Prerequisites
- The MFA and
SSO license for Identity360 is required to enable SSO for enterprise applications.
- Log in to Identity360 as an Admin, Super Admin, or Technician with a role that has
Application Integration and Single Sign-on permissions.
- Navigate to Applications > Application Integration > Create New Application,
and select Projector PSA from the applications displayed.
Note: You can also find Projector PSA from the
search bar located at the top.
- Under the General Settings tab, enter the Application Name and
Description.
- Under the Choose Capabilities tab, select Single Sign-on and click
Continue.
General Settings of SSO
configuration for Projector PSA.
- On the Integration Settings tab, navigate to Single Sign On
and click IdP Details. Copy the Login URL value and download the
Signing Certificate, which will be used later during the configuration in Projector PSA.
Integration Settings of SSO
configuration for Projector PSA.
Projector PSA (service provider)
configuration steps
- Log in to Projector PSA, the service provider (SP), as an administrator.
- Navigate to Integration > Single Sign On > SAML 2.0.
- Copy the Account ID from the ACS URL, which will be used later during
the configuration of Projector PSA in Identity360. For example, if the ACS URL is https://app.projectorpsa.com/Saml2Assert/iwuw33deru, then the Account
ID is iwuw33deru.
- Click Edit SSO Settings.
Projector PSA portal view.
- In the SAML2 Endpoint URL field, paste the Login URL value copied in step 6 of the prerequisites.
- In the X509 Certificate Details field, click Load Certificate from File
and upload the Signing Certificate downloaded in step 6 of the
prerequisites.
- Click Save.
Projector PSA SAML configuration.
Note: Each user must be configured in Projector PSA for SSO. Learn more
from this
help document.
Identity360 (identity provider)
configuration steps
Switch to the application configuration page in Identity360, the identity provider (IdP).
- In the Account ID field, paste the value copied in step 3 of the
Projector PSA configuration.
- Enter the Relay State parameter, if necessary.
Note: The Relay State is an optional parameter used with a SAML
message to remember where you were or to direct you to a specific page after logging in.
- Click Save.
Integration Settings of SSO
configuration for Projector PSA.
- To learn how to assign users or groups to one or more applications, refer to this page.
Your users will now be able to sign in to Projector PSA through the Identity360 portal.
Note: For Projector PSA, both SP-initiatied and IdP-initiated flows are
supported.
Steps to enable MFA for Projector PSA
Setting up MFA for Projector PSA using Identity360 involves the following steps:
- Set up one or more authenticators for identity verification when users attempt to log in to Riva
Cloud. Identity360 supports various authenticators, including Google Authenticator, Zoho OneAuth,
and email-based verification codes. Click here
for steps to set up the different authenticators.
- Integrate Projector PSA with Identity360 by configuring SSO using the steps listed here.
- Now, activate MFA for Projector PSA by following the steps mentioned here.
How does MFA for applications work in Identity360?