Salesforce

Salesforce provides customer relationship management software and applications focused on sales, customer service, marketing automation, analytics, and application development.

Single Sign-On Configuration

Log in as an administrator in your Salesforce panel and go to settings.

Within settings, go to identity and then to Single Sign-On Settings.

Follow the steps in order:

  1. Click the modify button.
  2. Activate the option that says 'SAML Enabled'.
  3. Click the New button from the metadata file.

Now go to the Ironchip panel and create a SAML type application:

Go to Application, click on New Application.

Click on create application.

Select SAML type and download the metadata file.

Upload the downloaded file to Salesforce and click create.

Save the changes (change the name if you want) and download the metadata file that Salesforce provides you.

Once you have downloaded this file, upload it to a public Internet address and write the URL in raw format in the Metadata URL field on the Ironchip platform.

Add the application by clicking on 'Add Service' and create the users according to the following video. (The username must be the same as Salesforce)

Activate Ironchip as an authentication method.

In Salesforce, search for the My Domain section using the search bar.

Click the Modify button in the Authentication Settings section.

Enable the new method created and save the changes. It's already configured.

Authentication

To log in with Ironchip, simply go to the Salesforce login page, select the login option below.

Enter the username.

And authorize the connection through the Ironchip app.

 

Configuration

The first step is to go to the single sign-on settings, and activate the option that says: Disable sign-in with Salesforce credentials.

Next, go to Permission Sets and press the New button.

Once you have created this new set, write the following in the search bar:

Single sign-on.

Press the only option that appears.

Click on the Modify button, activate the marked option and save the changes.

Go to the Users or Groups panel, depending on which one you want to modify, and click on the name of the user or group.

Scroll down until you see the option for Permission Set Assignment, and click on modify.

Finally, add the set you created at the beginning, and save the changes.

Verification

To check if the setup is correct, try logging in with the credentials of a user configured with this new rule, and you'll see that entering username and password won't allow you access, however, using Ironchip will.