Configuring your SP connection for IdP-initiated SSO
About this task
This task is only required if you want to enable identity provider (IdP)-initiated single sign-in (SSO). |
To successfully configure your SP connection for IdP-initiated SSO, you must add a RelayState
parameter to your SP connection’s Assertion Consumer Service (ACS) URL.
Steps
-
In the PingFederate admin console, click your Coupa SP connection to edit it.
-
In the Protocol Settings section, click the Assertion Consumer Service URL link.
-
Click Edit for the endpoint URL you’re using in your SP connection.
-
Enter the following endpoint URL, which contains the
RelayState
parameter:/sp/ACS.saml2?RelayState=https://YourSubDomain.coupacloud.com/sessions/saml_post
The YourSubDomain variable is your Coupa subdomain, which you obtained in Obtaining required information.
-
Click Update.
-
Click Done, Done and Save.