WP Engine - SSO configuration

WP Engine - SSO configuration

Alert
Please note that this application has not been formally tested by Kelvin Zero Inc. It is provided solely as a reference guide. If you encounter any issues, kindly submit a ticket directly through the support desk.
Quote
This documentation provides a step-by-step guide to setting up Single Sign-On (SSO) for WP Engine using MPAS. SSO simplifies user authentication by allowing access to multiple applications with a single set of credentials. This integration enhances security and improves user experience across your organization
Warning
To set up Multi-Pass with  WP Engine, ensure you meet the following requirements:
- WP Engine admin rights
- MPAS Admin rights
- Make sure that all users intended to use SSO in WP Engine are registered in your IdP and have the necessary permissions to access WP Engine.
Important: Custom elements in URLs (like realm names) are case sensitive. Make sure to match the exact casing from your environment.




WP Engine - SSO configuration





Step 1 - WP Engine Configuration

  1. Log into WP Engine as an Administrator.
  2. Expand Users in the left menu and select Single Sign-On.
  3. Click Setup SSO for a new domain.
  4. Enter your email domain and select the WP Engine account to associate (Administrator account recommended).
  5. A DNS TXT record will be displayed. Add this record to your DNS host for validation.
  6. Once DNS validation succeeds, SAML app details will appear.
  7. Download the WP Engine metadata file locally.
  8. Click Next and review :
    1. App Name
    2. Description
    3. Logo.
FieldValue
ACS URL (Recipient)Provided by WP Engine SSO setup
Audience URI / Entity IDProvided by WP Engine
SP MetadataDownloadable XML file (e.g., WPEngineMetadata.xml)


Step 2 - Multi-Pass configuration

  1. Open the Multi-Pass Dashboard.

  1. Select your tenant
  2. Click on Integrations and then click on Applications.
  3. In the Custom Integration section, choose SAML.

  1. Upload the WPEngineMetadata.xml you downloaded earlier.

  1. Verify that all fields are populated correctly: 
FieldValue
Client ID (= Audience URI)(From WP Engine)
NameWP Engine
ACS URL(From WP Engine)
NameID Formatemail
  1. Click Download Tenant XML data and save it locally (this URL will be uploaded into WP Engine).
  2. Click Add Integration.
  3. Go to Advanced Console

  1. Click on Clients.
  2. Locate the WP Engine client and verify:
General settings
FieldValue
Client ID(Audience URI)
NameWP Engine
Always Display in UION
Access settings
FieldValue
 Home URL
Valid Redirect URIs (ACS)(From WP Engine)
IdP-Initiated URL<APP_NAME>
SAML Capabilities
SettingValue
Force NameID FormatON
Force POST BindingON
Include AuthnStatementON
Signature & Encryption
SettingValue
Sign DocumentsOFF
Sign AssertionsON

Step 3 - Testing the Integration

  1. Log into WP Engine and create a test user.
  2. In Multi-Pass Dashboard, create a test user with the same email.
  3. Attempt login via SSO using the MPAS Portal.
  4. Confirm attributes (email, firstName, lastName) are received.

    • Related Articles

    • SAML SSO Integration Guide

      This guide provides an overview of how to configure SAML Single Sign-On (SSO) between Multi-Pass and a third-party Service Provider (SP). Multi-Pass acts as the Identity Provider (IdP) in this federation model. Multi-Pass is working on SCIM support ...
    • Notion - SSO configuration

      Please note that this application has not been formally tested by Kelvin Zero Inc. It is provided solely as a reference guide. If you encounter any issues, kindly submit a ticket directly through the support desk. This documentation provides a ...
    • Vanta - SSO configuration

      This documentation has been tested and approved by Kelvin Zero's team This documentation provides a step-by-step guide to setting up Single Sign-On (SSO) for Vanta using MPAS. SSO simplifies user authentication by allowing access to multiple ...
    • Dynatrace - SSO configuration

      This documentation has been tested and approved by Kelvin Zero's team This documentation provides a step-by-step guide to setting up Single Sign-On (SSO) for Dynatrace using MPAS. SSO simplifies user authentication by allowing access to multiple ...
    • ZoomInfo - SSO configuration

      Please note that this application has not been formally tested by Kelvin Zero Inc. It is provided solely as a reference guide. If you encounter any issues, kindly submit a ticket directly through the support desk. This documentation provides a ...