


Multi-Pass SSOSAML 2.0| Field | Value |
|---|---|
| Client ID (=SP Entity ID) | https://<HOST_NAME>.delinea.app/identity-federation/sp/<UNIQUE_STRING> |
| Name | delinea |
| Description | Delinea PAS SSO integration |
| Assertion Consumer Service URL | https://<HOST_NAME>.delinea.app/identity-federation/saml/assertion-consumer |
| NameID Policy Format | email |
| Field | Value |
|---|---|
| Client ID | https://<HOST_NAME>.delinea.app/identity-federation/sp/<UNIQUE_STRING> |
| Name | delinea |
| Description | Delinea PAS SSO integration |
| Always display in UI | ON |
| Field | Value |
|---|---|
| Home URL (IdP-initiated) | https://ca.auth.kzero.com/realms/<TENANT_NAME>/protocol/saml/clients/<APP_NAME> |
| Valid Redirect URIs (ACS) | https://<HOST_NAME>.delinea.app/identity-federation/saml/assertion-consumer |
| IDP-Initiated SSO URL Name | <APP_NAME> |
| Setting | Value |
|---|---|
| Name ID Format | |
| Force Name ID Format | ON |
| Force POST Binding | ON |
| Include AuthnStatement | ON |
| Setting | Value |
|---|---|
| Sign Documents | OFF |
| Sign Assertions | ON |
https://<HOST_NAME>.delinea.app/identity-federation/saml/assertion-consumer (must match Valid Redirect URI under Access Settings).