These steps will guide you through setting up the single sign-on functionality between ADSelfService Plus and EZRentOut.
Login to ADSelfService Plus as an administrator.
Navigate to Configuration → Self-service → Password Synchronizer..
Locate and click on EZRentOut in the list of applications provided.
Click on the Download SSO Certificate link in the top-right corner of the screen.
EZRentOut (Service Provider) configuration steps
Log in to EZRentOut using your administrator credentials.
From the drop-down on the top-right corner, click Settings.
Under the Add ons tab, navigate to SAML integration in the bottom of the page.
Check to enable SAML.
Paste the URL, copied in step 5 of Prerequisite, in the Identity Provider URL.
Open the downloaded certificate as a text file. Copy and paste the content it in the X.509 Certificate text field.
You can customize the login button.
Check the attribute values or add the following values.
First name as “first_name”
Last name as “last_name”
and mail as “mail”
Update to save the changes.
ADSelfService Plus (Identity Provider) configuration steps
Now, switch to ADSelfService Plus’ EZRentOut configuration page.
In the Domain Name field, enter the domain name of your email address. For example, if you use email@example.com to log in to EZRentOut, then EZRentOut is the domain name.
Enter the SP Identifier of your EZRentout account in the SP Identifier field. For Eg: https://<sp_identifier>.ezrentout.com
Provide a Description in the respective field.
In the Available Policies field, click on the drop-down box and select the policies for which you wish to enable single sign-on.
Click Save and log out of ADSelfService Plus.
For EZRentOut, single sign-on is supported for SP and IDP initiated flow.