These steps will guide you through setting up the single sign-on functionality between ADSelfService Plus and Kintone.
Login to ADSelfService Plus as an administrator.
Navigate to Configuration → Self-service → Password Synchronizer..
Locate and click on Kintone in the list of applications provided.
Click on the Download SSO Certificate link in the top-right corner of the screen.
Kintone (Service Provider) configuration steps
Login to Kintone with an administrator’s credentials.
Navigate to System Administration → Security → Login.
Under SAML Authentication paste the URL, copied in step 5 of Prerequisite, in the Login URL and Log out URL
Open the downloaded certificate as a text file. Copy and paste the content it in the X.509 Certificate text field.
You can save the configuration.
ADSelfService Plus (Identity Provider) configuration steps
Now, switch to ADSelfService Plus’ Kintone configuration page.
In the Domain Name field, enter the domain name of your email address. For example, if you use johndoe@Kintone.com to log in to Kintone, then Kintone is the domain name.
Enter Kinotne admin account SP-Identifier in the respective field.(https://<SP_Identifier>.kintone.com)
Provide a Description in the respective field.
In the Available Policies field, click on the drop-down box and select the policies for which you wish to enable single sign-on.
Click Save and log out of ADSelfService Plus.
For Kintone, single sign-on is supported for SP and IDP initiated flow.