To set up Multi-Pass with Egnyte, ensure you meet the following requirements:
- Egnyte admin rights
- MPAS Admin rights
- Make sure that all users intended to use SSO in Egnyte are registered in your IdP and have the necessary permissions to access Egnyte.
Important: Custom elements in URLs (like realm names) are case sensitive. Make sure to match the exact casing from your environment.
Egnyte - SSO configuration
- Log into Egnyte as an Administrator.
- Navigate to Settings, Configuration and select Security & Authentication.
- Under Single sign-on authentication, select SAML 2.0.
- Click Export Egnyte metadata XML and save the file locally.
- Open Multi-Pass Dashboard
- Select the correct tenant and go to Integrations, Applications and click on Add Application (SAML).
- In Multi-Pass, configure the application:
- Name = Egnyte
- Upload the Egnyte metadata XML you exported
- Save the integration
- Download the Multi-Pass IdP metadata (Tenant XML) — you will import this into Egnyte in Step 2
- Go to the advanced console
- Click on clients
- Use the search bar to look for the client you just created and verify that the different fields are completed like below :
General settings (Multi-Pass)
Access settings (Multi-Pass)
SAML capabilities (Multi-Pass)
| Setting | Value |
|---|
| Name ID Format | username |
| Force Name ID Format | ON |
| Force POST Binding | ON |
| Include AuthnStatement | ON |
Signature & Encryption (Multi-Pass)
| Setting | Value |
|---|
| Sign Documents | ON |
| Sign Assertions | ON |
Now move to the Keys tab and make sure that both parameters are switched to OFF
Go to the advanced tab
Assertion Consumer Service POST Binding URL = Valid Redirect URIs (ACS) = https://<DOMAIN_NAME>.egnyte.com/samlconsumer