N-Central (N-Able) - SSO configuration

N-Central (N-Able) - SSO configuration

Alert
This application has not been formally tested by Kelvin Zero Inc. It is provided solely as a reference guide. If you encounter any issues, kindly submit a ticket directly through the support desk.
Quote
This documentation provides a step-by-step guide to setting up Single Sign-On (SSO) for N-Central (N-Able) using Multi-Pass. SSO simplifies user authentication by allowing access to multiple applications with a single set of credentials. This integration enhances security and improves user experience across your organization.
Warning
To set up Multi-Pass with N-Central, ensure you meet the following requirements:
- N-Central admin rights
- MPAS Admin rights
- Make sure that all users intended to use SSO in N-Central are registered in your IdP and have the necessary permissions to access N-Central.
Important: Custom elements in URLs (like realm names) are case sensitive. Make sure to match the exact casing from your environment.






N-Central (N-Able) - SSO Configuration







Step 1 - Configure Multi-Pass as the Identity Provider (IdP)

  • Open Multi-Pass Dashboard
  • Select the correct tenant and go to Integrations, click on Applications
  • Select OIDC in the custom integration section

  • Complete the fields based on the table below
FieldValue
Client ID (=SP Entity ID)n-central
Namen-central
DescriptionN-Central OIDC Integration
Client AuthenticationON
Home URLhttps://login.n-able.com
Valid Redirect URIshttps://<SUBDOMAIN>.n-able.com:443/openIDSignInLogin


  • Select Add Integration
  • Go to the Advanced Console by clicking on the right side of your screen
  • Client on Client and use the search bar to search for N-Central
  • Make sure all the fields are populated based on the tables below
General settings (Multi-Pass)
FieldValue
Client IDn-central
Namen-central
DescriptionN-Central OIDC Integration
Always display in UION

Access settings (Multi-Pass)
FieldValue
Home URLhttps://login.n-able.com
Valid Redirect URIs (ACS)https://<SUBDOMAIN>.n-able.com:443/openIDSignInLogin

Capability Config
SettingValue
Client AuthenticationON
Authentication FlowStandard Flow & Direct Access Grants
  • Go to the Credentials Tab and copy the Secret Key (needed in Step 2).

  • Go to the Client Scopes Tab and select the first scope in the list.

  • Click Add Predefined Mapper

  • Add the following Mappers:
    • given name
    • username
    • family name

Step 2 - Configure N-Central as the Service Provider (SP)

  • Log into N-Central as an Administrator
  • Navigate to Administration > User Management > SSO Providers
  • Click Add and select Custom (OpenID Connect) from the dropdown
  • Set Name = Multi-Pass
  • Under Details, populate the following:
FieldValue
Client IDn-central
Client SecretObtained in Step 1
Redirect URLConfirm matches "Valid Redirect URIs" in Step 1
Authority/Servicehttps://ca.auth.kzero.com/realms/<TENANT_NAME>/.well-known/openid-configuration
Scopeopenid profile
  • Click Test Connection to confirm integration
  • Select Link Users tab and click LINK USERS
  • Choose users to enable SSO for and click Save