Steps to configure SAML SSO for Blissbook
About Blissbook
Blissbook is a digital employee handbook and policy management platform designed to help organizations create, distribute, and maintain interactive, legally compliant handbooks that reflect company culture. It offers a user-friendly solution for HR teams to manage policy documentation, track electronic signatures, and ensure compliance with labor laws.
The following steps will help you enable SSO for Blissbook from Identity360.
Prerequisites
- The MFA and SSO license for Identity360 is required to enable SSO for enterprise applications.
- Log in to Identity360 as an Admin, Super Admin, or Technician with a role that has Application Integration and Single Sign-on permissions.
- Navigate to Applications > Application Integration > Create New Application, and select Blissbook from the applications displayed.
Note: You can also find Blissbook from the search bar located at the top.
- Under the General Settings tab, enter the Application Name and Description.
- Under the Choose Capabilities tab, select Single Sign-on and click Continue.
General Settings of SSO configuration for Blissbook
- Under Integration Settings, navigate to the Single Sign On tab, and click IdP Details. Copy the Login URL, Entity ID, and Signing Certificate values, which will be used later during the configuration in Blissbook.
Integration Settings of SSO configuration for Blissbook.
Blissbook (service provider) configuration steps
- In Blissbook, navigate to Account Settings.
- Go to Authentication > SETTINGS.
- Click Enable SSO, then choose Okta.
- Under the SSO URL field, paste the Login URL value copied in step 6 of prerequisites.
- Under the Issuer field, paste the Entity ID value copied in step 6 of prerequisites.
- From the Unique Employee Identifier drop-down, choose Email.
- Under the X.509 Certificate field, paste the Signing Certificate value copied in step 6 of prerequisites.
- Click Install Okta SSO.
Identity360 (identity provider) configuration steps
- Switch to Identity360's application configuration page.
- In the Company Name field, enter the subdomain name of your Blissbook account. For example, if your Blissbook URL is https://bridgetocorp.blissbook.com, then bridgetocorp is the Company Name.
- Enter the Relay State parameter, if necessary.
Note: Relay State is an optional parameter used with a SAML message to remember where you were or to direct you to a specific page after logging in.
- Click Save.
Integration Settings of SSO configuration for Blissbook.
- To learn how to assign users or groups to one or more applications, refer to this page.
Your users will now be able to sign in to Blissbook through the Identity360 portal.
Note: For Blissbook, both IdP- and SP-initiated flows are supported.
Steps to enable MFA for Blissbook
Setting up MFA for Blissbook using Identity360 involves the following steps:
- Set up one or more authenticators for identity verification when users attempt to log in to Blissbook. Identity360 supports various authenticators, including Google Authenticator, Zoho OneAuth, and email-based verification codes. Click here for steps to set up the different authenticators.
- Integrate Blissbook with Identity360 by configuring SSO using the steps listed here.
- Now, activate MFA for Blissbook by following the steps mentioned here.
How does MFA for applications work in Identity360?