Lusha - SSO configuration

Lusha - SSO configuration

Alert
Please note that this application has not been formally tested by Kelvin Zero Inc. It is provided solely as a reference guide. If you encounter any issues, kindly submit a ticket directly through the support desk.
Quote
This documentation provides a step-by-step guide to setting up Single Sign-On (SSO) for Lusha using MPAS. SSO simplifies user authentication by allowing access to multiple applications with a single set of credentials. This integration enhances security and improves user experience across your organization
Warning
To set up Multi-Pass with Lusha, ensure you meet the following requirements:
-  Lusha admin rights
- MPAS Admin rights
- Make sure that all users intended to use SSO in Lusha are registered in your IdP and have the necessary permissions to access Lusha.
Important: Custom elements in URLs (like realm names) are case sensitive. Make sure to match the exact casing from your environment.



Lusha - SSO configuration




Step 1 - Configure Multi‑Pass (MPAS) as Identity Provider

Access the Dashboard

  1. Open Multi-Pass Dashboard

  1. Select your tenant
  2. In the left-hand menu, click Integrations, then select Applications
  3. Under Custom Integration, click SAML



Fill the SAML Integration Form Using Lusha Information

FieldValue
SP Entity ID / Audience / Client IDhttps://dashboard-services.lusha.com/v2/sso-saml
ACS / Assertion Consumer Service URLhttps://dashboard-services.lusha.com/v2/sso-saml
NameID Policy FormatEmail
Namelusha
DescriptionSSO integration for Lusha


  1. At the bottom of the form, download the X.509 certificate, it will be needed in Lusha.
  2. Click Add Integration to create the app.

Adjust Advanced Settings in MPAS Console

  1. Go the advanced console by clicking on the left side
  2. Click on client,
  3. and use the search bar to find the integration you add from the previous steps

  1. when you are in, make sure all the fields are correctly completed.
  2. In the settings tab : 
General settings
SettingValue
Client IDhttps://dashboard-services.lusha.com/v2/sso-saml
Namelusha
DescriptionSSO integration
Always display in UION

Access settings
SettingValue
Home URLhttps://ca.auth.kzero.com/realms/<TENANT_NAME>/protocol/saml/clients/<APP_NAME>
Valid Redirect URIshttps://dashboard-services.lusha.com/v2/sso-saml
IDP-Initiated SSO URL name<APP_NAME>

SAML capabilities
SettingValue
Name ID formatemail
Force Name ID formatOFF
Force POST bindingON
Force artifact bindingOFF
Include AuthnStatementON
Include OneTimeUse ConditionOFF
Optimize REDIRECT signing key lookupOFF
Allow ECP flowOFF

Signature & Encryption
SettingValue
Sign documentsOFF
Sign assertionsON
  1. then move to the tab Keys and make sure that both parameters are switch to OFF
  2. Click on the advanced tab
    1. Assertion Consumer Service POST Binding URL  = Valid Redirect URIs (https://dashboard-services.lusha.com/v2/sso-saml)

Step 2 - Finalize Setup in Lusha

  1. Contact support@lusha.com to enable SAML SSO on your account.
  2. Send them:
  3. Once configured by Lusha, test the login from https://auth.lusha.com/sso-login

    • Related Articles

    • Wrike - SSO configuration

      This documentation has been tested and approved by Kelvin Zero's team This documentation provides a step-by-step guide to setting up Single Sign-On (SSO) for Wrike using MPAS. SSO simplifies user authentication by allowing access to multiple ...
    • Intercom - SSO configuration

      Valid redirect URIs Please note that this application has not been formally tested by Kelvin Zero Inc. It is provided solely as a reference guide. If you encounter any issues, kindly submit a ticket directly through the support desk. This ...
    • Huntress - SSO configuration

      This documentation has been tested and approved by Kelvin Zero's team This documentation provides a step-by-step guide to setting up Single Sign-On (SSO) for Huntress using MPAS. SSO simplifies user authentication by allowing access to multiple ...
    • FortiClient / FortiGate - SSO Configuration

      Please note that this application has not been formally tested by Kelvin Zero Inc. It is provided solely as a reference guide. If you encounter any issues, kindly submit a ticket directly through the support desk. This documentation provides a ...
    • Rocket.chat - SSO configuration

      This documentation has been tested and approved by Kelvin Zero's team This documentation provides a step-by-step guide to setting up Single Sign-On (SSO) for Rocket.chat using MPAS. SSO simplifies user authentication by allowing access to multiple ...