How to set up iHasco SSO with SAML2

Created by Michael Walsh, Modified on Mon, 26 Feb at 8:52 PM by Amanda Lowndes

Supported Features

The iHasco Single Sign-On (SSO) SAML2 integration currently supports the following features:

  • SP-initiated SAML2
  • Just In Time (JIT) Provisioning


Overview

 You will need:

  • Access to the SSO feature within the iHasco Atlas LMS. Tell your iHasco account manager that you want to use SSO and they will enable it.

 What you need to do:

  1. Create the Identity provider(IDP) details in your iHasco Atlas LMS.
  2. Set the Registration method to use your IDP in iHasco Atlas LMS.
  3. Test SSO with iHASCO Training using a web browser.


Create the Identity provider details in iHasco Atlas LMS

Note You need to sign in to your IDP account during this process because you need to copy your Identity provider details into your iHasco LMS.

  1. Sign in to iHasco Atlas LMS as an administrator at https://app.ihasco.co.uk/client/login.
  2. Click Settings.
  3. Scroll down to the Advanced card and click Single Sign On.
  4. Click Add Provider and select SAML2.
  5. Type your name for this provider in Description.
  6. Scroll to find IDENTITY PROVIDER DETAILS.
  7. Copy and paste the values in the following fields from your IDP to iHasco:
  8. Copy and paste the contents of the X509 Certificate from your IDP to iHasco:
  9. Scroll to find USER ATTRIBUTE MAPPING.
  10. Copy and paste your IDP mapping addresses into the following fields:
  11. Click Save.
  12. Click Enable now.


 Copy from your IDP

 Paste to iHasco Atlas LMS SSO: 

 IDENTITY PROVIDER DETAILS 

 Required
 ACS URL Single Sign-on URL Yes
 SLO URL Single Logout Service URL Optional
 Entity URL Entity ID Yes



 Copy from your IDP:

 Paste to iHasco Atlas LMS SSO 

 IDENTITY PROVIDER DETAILS 

 X509 Certificate file contents X509 (Public) Certificate


 Paste to iHasco Atlas LMS SSO 

 USER ATTRIBUTE MAPPING 


 Email address Your IDP mapping for emailaddress
 First name Your IDP mapping for firstname
 Last name Your IDP mapping for lastname



Set the Registration method in iHasco Atlas LMS

  1. Click Settings.
  2. Scroll down to the Advanced card and click Security.
  3. Find Registration Method and select Single Sign On Provider.
  4. Choose your new provider as the Selected Provider.
  5. Click Save changes.

SAML2 / iHasco SSO set up is now complete.


Test SSO using SAML2

Note Remember to add users to the iHasco Training application in your IDP and sign out of any iHasco administrator accounts before testing.

  1. In your iHasco Atlas LMS, click Settings.
  2. Scroll down to the Advanced card and click Single Sign On.
  3. Scroll down to SAML2 SERVICE PROVIDER DETAILS.
  4. Find User Login URL, this field contains your Training URL.
  5. Copy and paste the Training URL into a web browser, click search.


If the test is successful, you will be signed in and taken to the iHasco My Learning screen (or to the iHasco Atlas LMS if testing with a pre-registered admin account).


Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article