Docusign - SSO configuration

Docusign - SSO configuration

Alert
Please note that this application has not been formally tested by Kelvin Zero Inc. It is provided solely as a reference guide. If you encounter any issues, kindly submit a ticket directly through the support desk.
Quote
This documentation provides a step-by-step guide to setting up Single Sign-On (SSO) for Docusign using MPAS. SSO simplifies user authentication by allowing access to multiple applications with a single set of credentials. This integration enhances security and improves user experience across your organization
To set up Multi-Pass with  Docusign, ensure you meet the following requirements:
- Docusign admin rights
- MPAS Admin rights
- Make sure that all users intended to use SSO in Docusign  are registered in your IdP and have the necessary permissions to access Docusign.
Important: Custom elements in URLs (like realm names) are case sensitive. Make sure to match the exact casing from your environment.


Docusign - SSO configuration



Step 1 - DocuSign Configuration (Service Provider)

  1. Go to your DocuSign Admin page.
  2. In the left panel, under Access Management, click on Identity Providers
  3. Click on Add Identity Provider.
  4. Enter a name (e.g., Multi-Pass) and click Next.
FieldValue
Identity Provider Issuerhttps://ca.auth.kzero.com/realms/<TENANT_NAME>
Identity Provider Login URLhttps://ca.auth.kzero.com/realms/<TENANT_NAME>/protocol/saml
Identity Provider Metadata URLhttps://ca.auth.kzero.com/realms/<TENANT_NAME>/protocol/saml/descriptor
  1. Click Next and Add Identity Provider.
  2. Enable Single Logout and use: https://ca.auth.kzero.com/realms/<TENANT_NAME>/protocol/saml

SSO Settings:

SettingValue
Send AuthN Request byPOST
Send Logout Request byGET

DocuSign Endpoints to collect:

FieldExample Format
Service Provider Entity IDhttps://<SUBDOMAIN>.docusign.com/organizations/<ORG_ID>/saml2
Assertion Consumer Service URLhttps://<SUBDOMAIN>.docusign.com/organizations/<ORG_ID>/saml2/login/<IDPID>


Step 2 - Multi-Pass Configuration (Identity Provider)

  1. Open Multi-Pass Dashboard
  2. Select your tenant > Integrations > Applications > SAML.
  3. Click on Add Integration and complete the form:
FieldValue
Client IDhttps://<SUBDOMAIN>.docusign.com/organizations/<ORG_ID>/saml2
Namedocusign
DescriptionSSO Integration
Assertion Consumer Service URLhttps://<SUBDOMAIN>.docusign.com/organizations/<ORG_ID>/saml2/login/<IDPID>
NameID Policy Formatemail
  1. Then go to Advanced Console > Clients, search and configure the `docusign` client as previously instructed.
SettingValue
Name ID Formatemail
Force Name ID FormatON
Force POST BindingON
Include AuthnStatementON
Sign DocumentsOFF
Sign AssertionsON
 

Attribute Mapping

  1. Navigate to Client Scopes > Select docusign
  2. click on configure a new mapper
  3. From the list select "User Attribute"
  4. Add the following mappers
emailaddress

FieldValue
Mapper TypeUser Attribute
Nameemailaddress
User Attributeemail
Friendly Nameemailaddress
SAML Attribute Nameemailaddress

givenname
FieldValue
Mapper TypeUser Attribute
Namegivenname
User AttributefirstName
Friendly Namegivenname
SAML Attribute Namegivenname

surname
FieldValue
Mapper TypeUser Attribute
Namesurname
User AttributelastName
Friendly Namesurname
SAML Attribute Namesurname
    • Related Articles

    • SAML SSO Integration Guide

      This guide provides an overview of how to configure SAML Single Sign-On (SSO) between Multi-Pass and a third-party Service Provider (SP). Multi-Pass acts as the Identity Provider (IdP) in this federation model. Multi-Pass is working on SCIM support ...
    • Datadog - SSO configuration

      This documentation has been tested and approved by Kelvin Zero's team This documentation provides a step-by-step guide to setting up Single Sign-On (SSO) for Datadog using MPAS. SSO simplifies user authentication by allowing access to multiple ...
    • Notion - SSO configuration

      Please note that this application has not been formally tested by Kelvin Zero Inc. It is provided solely as a reference guide. If you encounter any issues, kindly submit a ticket directly through the support desk. This documentation provides a ...
    • Vanta - SSO configuration

      This documentation has been tested and approved by Kelvin Zero's team This documentation provides a step-by-step guide to setting up Single Sign-On (SSO) for Vanta using MPAS. SSO simplifies user authentication by allowing access to multiple ...
    • Dynatrace - SSO configuration

      This documentation has been tested and approved by Kelvin Zero's team This documentation provides a step-by-step guide to setting up Single Sign-On (SSO) for Dynatrace using MPAS. SSO simplifies user authentication by allowing access to multiple ...