SureAccess Login with PingOne
This guide focuses specifically on configuring SureAccess as a secure VPN gateway using Ping Identity for authentication. In this setup, the Ping Identity screen acts as the "gatekeeper" that users must pass through to establish a secure VPN tunnel to corporate resources.
The integration process consists of two main steps:
Configure PingOne for SAML Integration
Configure SureAccess Authentication Type in SureMDM
Configure PingOne for SAML Integration
To configure settings on the Ping Identity server, follow these steps:
Login to the PingOne Admin Portal, navigate to Applications, and click Add Application.
Select New SAML Application from the available options.
Enter the Application Name as SurAccess and provide a brief description if required.
Click Continue to Next Step to navigate to the Application Configuration tab.
Enter the following details in the respective fields:
Entity ID: urn:42gears:suremdm:SAML2ServiceProvider
ACS (Consumer) Service: https://<Account_URL>/saml?id=<Account_ID>
Single Logout URL: https://<Account_URL>/saml?id=<Account_ID>
Single Logout Response Endpoint: https://<Account_URL>/saml?id=<Account_ID>
Note: Admin should replace <Account_URL> with their SureMDM Server Path and <Account_ID> with their specific Account ID.
Click Continue to Next Step to proceed through the attribute mapping.
Click Save and Publish to finalize the application setup.
Locate the Download link to get the SAML Metadata file and click Finish.
Configure SureAccess Authentication Type in SureMDM
Log in to the SureMDM Console.
Go to Settings > Account Settings > Enterprise Integrations > SureAccess > SureAccess Configuration > SureAccess Authentication.
Set SureAccess Authentication Type to SAML Authentication.
Select PingOne.
Enter the respective values (Service Identifier, Sign On Service Url, Logout Service Url) copied from point 8 of Step 1.
Click Apply to save.