This article is best for:
- Global Admins
In this article:
Integrating Bonusly with ADFS
Navigate to your Admin Settings page, then navigate to Integrations
Click on SAML
Fill in the following information:
IdP SSO target URL: This is the ADFS URL that will process the SAML payload from Bonusly. E.g. https://adfs.yourcompany.com/adfs/ls/
IdP Issuer: ADFS Issuer URL, e.g http://adfs.yourcompany.com/adfs/services/trust
IdP Cert X509 OR Fingerprint: Copy over the X509 Cert or Fingerprint from ADFS.
Save the integration
Follow this Microsoft Help Center article to add Relying Party Trust
Endpoint Tab
Advanced Tab
Identifiers Tab
The relying party identifier should be your SP issuer within Bonusly, as found on your Integrations > SAML page.
Set up Claim Rules in ADFS:
After you set up the AD FS relying party trust:
Testing Single Sign-On
Once you've configured SSO, you can test it as follows:
IdP-initiated SSO:
Log out of Bonusly
Log in to your IdP (e.g. Okta, OneLogin, etc)
Click on the Bonusly app in your app panel
SP-initiated SSO:
Log out of Bonusly
Visit the URL https://bonus.ly/saml/APP_ID/index (where APP_ID is the "App ID" provided on the SSO configuration page in Bonusly)
Make sure you replace
APP_ID
from the above link with the App ID from the SAML Integration page in Bonusly!
Restricting Login Methods
Once you have tested SSO and verified that it is working, you can restrict sign on methods for your Bonusly account to require that users authenticate via SSO. This is more secure and makes it so that your employees don’t need to remember passwords for Bonusly.
To restrict to SAML SSO only:
Scroll down to "Security" and select the check box to only allow users to login via single sign on.
Select the "Save settings" button.
Questions? Send us a note to [email protected]; we'd be happy to help!
Was this article helpful? Let us know by rating it below with an emoji and sharing your feedback!