Andfrankly cloud application
You must be signed in as a super administrator for this task.
Using Security Assertion Markup Language (SAML), your users can use their Google Cloud credentials to sign in to enterprise-cloud applications.
Set up SSO via SAML for Andfrankly
Here's how to set up single sign-on (SSO) via SAML for the Andfrankly® application.
Step 1: Get Google identity provider (IdP) information-
Sign in to your Google Admin console.
Sign in using your administrator account (does not end in @gmail.com).
-
From the Admin console Home page, go to Security, and then the SSO settings:
You must be signed in as a super administrator for this task.
Click Set up single sign-on (SSO) for SAML applications.Or, if you don’t have that option:
Click Set up single sign-on (SSO).
- In the Set up single sign-on (SSO) section:
- Copy and save the SSO URL.
- Download the IDP Metadata.
In the next step, you send this information to Andfrankly via email. After they respond, you return to the Admin console in Step 3 below to finish SSO configuration.
Send an email to help@andfrankly.com asking them to enable SAML 2.0 for your organization. Include the following identity provider (IdP) information copied in Step 1:
- SSO URL
- Attach the IDP metadata you downloaded in Step 1 as a text file attachment to the email.
Also, ask Andfrankly to provide you with your organization's "COMPANY_IDENTIFIER", a unique value you need to finish configuring SSO in the Admin console in Step 3 below.
-
Sign in to your Google Admin console.
Sign in using your administrator account (does not end in @gmail.com).
-
From the Admin console Home page, go to Apps
SAML apps.
To see Apps on the Home page, you might have to click More controls at the bottom.
- Click the plus (+) icon at bottom right.
- Locate and click Andfrankly in the application list.
- Click Next.
The Basic information window shows the Application name and Description seen by users.
- Click Next.
- On the Service Provider Details page, edit the ACS URL and Entity ID, replacing {COMPANY_IDENTIFIER} with the value provided by Andfrankly.
- Click Next.
- On the Attribute Mapping page, set the Select category and Select user field values as follows for the listed attributes:
Application attribute Select category Select user field firstname Basic Information First Name lastname Basic Information Last Name email Basic Information Primary Email - Click Finish.
-
Sign in to your Google Admin console.
Sign in using your administrator account (does not end in @gmail.com).
-
From the Admin console Home page, go to Apps
SAML apps.
To see Apps on the Home page, you might have to click More controls at the bottom.
- Select Andfrankly.
-
At the top right of the gray box, click Edit Service
.
-
To turn on or off a service for everyone in your organization, click On for everyone or Off for everyone, and then click Save.
-
To turn on or off a service only for users in an organizational unit:
- At the left, select the organizational unit.
- Select On or Off.
- To keep the service turned on or off even when the service is turned on or off for the parent organizational unit, click Override.
- If the organization's status is already Overridden, choose an option:
- Inherit—Reverts to the same setting as its parent.
- Save—Saves your new setting (even if the parent setting changes).
Learn more about organizational structure.
- Ensure that your Andfrankly user account email IDs match those in your Google domain.
- Close all browser windows.
- Open https://www.andfrankly.com/en/start-page/#login and attempt to sign in. You should be automatically redirected to the Google sign-in page.
- Enter your username and password.
After your sign in credentials are authenticated, you are automatically redirected back to Andfrankly.