Steps to configure SAML SSO for Darwinbox
About Darwinbox
Darwinbox is a cloud-based human resource management system that helps organizations manage end-to-end HR processes, including recruitment, onboarding, payroll, performance management, and employee engagement. It provides a unified platform to streamline HR workflows and enhance the employee experience through automation and analytics.
The following steps will help you enable SSO for Darwinbox from Identity360.
Prerequisites
- The MFA and SSO license for Identity360 is required to enable SSO for enterprise applications.
- Log in to Identity360 as an Admin, Super Admin, or Technician with a role that has Application Integration and Single Sign-on permissions.
- Navigate to Applications > Application Integration > Create New Application, and select Darwinbox from the applications displayed.
Note: You can also find Darwinbox from the search bar located at the top.
- Under the General Settings tab, enter the Application Name and Description.
- Under the Choose Capabilities tab, select the Single Sign-on check box and click Continue.
General Settings of SSO configuration for Darwinbox.
- Under Integration Settings, navigate to the Single Sign On tab and click IdP Details. Download the Metadata file, which will be used later during the configuration in Darwinbox.
- Enter the ACS URL and Entity ID fields with any temporary placeholder values, and click Save.
Integration Settings of SSO configuration for Darwinbox.
Darwinbox (service provider) configuration steps
- Send an email to the Darwinbox support team with the Metadata file downloaded in step 6 of the prerequisites, and request them to configure SAML for your account.
- After Darwinbox configures the IdP metadata, they will provide the SP-side ACS URL and Entity ID values required to complete the SSO configuration.
Identity360 (identity provider) configuration steps
- After receiving the email response from the Darwinbox support team, you need to update the SP values in the Identity360 SSO configuration.
- Go to Applications > Application Integration. Click edit icon beside Darwinbox.
- From General Settings, click Continue.
- Go to Integration Settings. Replace the old value in the ACS URL and Entity ID fields with the value provided by Darwinbox in step 2 of the Darwinbox configuration.
- Enter the Relay State parameter if necessary.
Note: Relay State is an optional parameter used with a SAML message to remember where you were or to direct you to a specific page after logging in.
- Click Save.
Integration Settings of SSO configuration for Darwinbox.
To learn how to assign users or groups to one or more applications, refer to this page.
Your users will now be able to sign in to Darwinbox through the Identity360 portal.
Note: For Darwinbox, both SP-initiatied and IdP-initiated flows are supported.
Steps to enable MFA for Darwinbox
Setting up MFA for Darwinbox using Identity360 involves the following steps:
- Set up one or more authenticators for identity verification when users attempt to log in to Darwinbox. Identity360 supports various authenticators, including Google Authenticator, Zoho OneAuth, and email-based verification codes. Click here for steps to set up the different authenticators.
- Integrate Darwinbox with Identity360 by configuring SSO using the steps listed here.
- Now, activate MFA for Darwinbox by following the steps mentioned here.
How does MFA for applications work in Identity360?