This section explains how to configure SSO using Ping to use use enterprise-wide Ping credentials to sign in to (CCAI Platform) and the agent adapter. Ping SSO uses the Security Assertion Markup Language (SAML) authentication protocol.
Before you begin
To configure SSO using Ping, be sure you have the following:
A Ping account
CCAI Platform administrator credentials
Configure Ping for SSO
To configure Ping, follow these steps:
Sign in to your existing Ping account.
Using this Ping documentation as a guide, select the tab for the specific product you have. The products available include the following:
PingFederate
PingOne
PingOne for Enterprise
Follow the specific instructions for your Ping product. At the end of the setup for your product, you should have obtained the following:
- Login URL
- Ping AD Identifier
- Email name or Name ID
- Certificate
When these are obtained, continue to configure your CCAI Platform instance for SSO.
Configure your CCAI Platform instance for SSO
To configure SSO for your CCAI Platform instance, follow these steps:
In the Google Cloud console, go to the project selector dashboard and select the project that contains your instance.
In the navigation menu, click CCAI Platform.
The CCAI Platform instances page displays.
In the Name column, click the instance that you want to configure SSO for.
On the CCAI Platform instance Detail page, click
Edit.For the login method, select SAML.
In the Single sign-on URL field, enter the Login URL value that you saved in Configure Ping.
In the Entity ID field, enter the Ping AD Identifier value that you saved in Configure Ping.
In the Email field mapping field, enter a text string such as
Email name
orName ID
. This is used as a label for the email name field on the SSO sign-in page.In the Certificate field, enter the Base64 certificate that you downloaded in Configure Ping. Be sure to include
-----BEGIN CERTIFICATE-----
and-----END CERTIFICATE-----
from the certificate.Click save.
Verify SSO authentication
To verify SSO authentication, follow these steps:
Go to the agent adapter in your customer relationship management (CRM) application.
Click Login with company SSO. A sign-in page displays.
Sign in with your Ping credentials.