Custom SAML IDP Configuration
Configuring an IDP to authenticate using SAML requires the:
- Service provider information
- Attributes
- Spot configuration
Service Provider Information
- Single sign-on URL (ACS URL): https://console.spotinst.com/auth/saml
- Recipient URL: https://console.spotinst.com/auth/saml
- RelayState used in IDP-initiated SSO:
- Sign in to your Spot account as an Admin.
- In the Spot console, click the user icon
> Settings.
- Click Security > Identity Providers.
- Make a copy of the Relay State value.
The Relay State should be used while setting up the IDP. Google users should enter this value (as is) to the start url
field under Service Provider Details.
Attributes
The following attributes should be sent to the SAML response:
- FirstName
- LastName
Spot Configuration
- Sign in to your Spot account as an Admin.
- In the Spot console, click the user icon
> Settings.
- Click Security > Identity Providers.
- Click Browse, select your metadata file, and click Save.