Custom Authentication - ADFS | Admin Guide - Zoho Directory

Custom authentication with ADFS

Prerequisites

Roles required to perform this action :

  • Organization Owner

  • Organization Admin

Custom authentication with ADFS:


Custom authentication with Active Directory Federation Services (ADFS) enables SAML-based single sign-on (SSO) from ADFS to Zoho. With SSO, you and your employees can sign in to ADFS and access Zoho directly, without having to sign in to Zoho.

To set up custom authentication with ADFS:
  1. Obtain the Sign-in URL, Sign-out URL, and the certificate from ADFS:
    1. Sign in to ADFS 3.0 server and open the Management Console.
    2. Right-click Service in the left-pane menu, then choose Edit Federation Service Properties.
    3. Under General, ensure that your DNS entries and certificate names are correct.
    4. Using your Federation Service name, use a browser and go to "https://{federationservicename}.com/federationMetaData/2007-06/FederationMetaData.xml".
    5. The Sign-in URL and Sign-out URL are present in the XML file as SingleSignOnService and SingleLogoutService tags respectively.
    6. Export the Token-Signing certificate:
      1. Right-click Certificate in the left-pane menu and click View Certificate.
      2. Click the Details tab.
      3. Click Copy to File, then click Next.
      4. Make sure No, do not export the private key is selected, then click Next.
      5. Select Base-64 encoded X.509 (.cer), then click Next.
      6. Choose where to save the file and name it.
      7. Click Next.
      8. Select Finish.
    7. Submit this data to Zoho to set up SAML in Zoho Directory.
  2. Add a Relying Party Trust:
    1. Under Trust Relationships in the left-pane menu, right-click Relying Party Trusts, then click Add Relying Party Trust.
    2. In Select Data Source, select Enter Data about the relying party manually.
    3. In Specify Display Name, enter "zoho.com" as the Display Name.
    4. In Choose Profile, select AD FS profile.
    5. Click Next.
    6. In Configure URL, check the Enable support for the SAML 2.0 WebSSO protocol.
    7. Enter the ACS URL provided on Zoho Directory's Custom Authentication page in the Service URL text box.
      ACS URL.
    8. In Configure Identifiers, choose directory.zoho.com as the Relying Party Trust Identifier.
    9. In Configure Multi-factor Authentication now, choose I do not want to configure multi-factor authentication settings for this relying party trust at this time.
    10. In Choose Issuance Authorization Rules, select Permit all users to access this relying party.
    11. Click Close.
  3. Create claim rules:
    You can create claim rules once the relying party trust is created. By default, the Claims Rule editor opens once you create a trust.
    1. Click Add Rule to create a new rule.
    2. In Choose Rule Type, select Send LDAP Attributes as Claims in the dropdown menu.
    3. Click Next.
    4. In Configure Claim Rule:
      1. Enter a Claim rule name.
      2. Choose Active directory under Attribute Store.
      3. Choose E-Mail Addresses under LDAP Attribute.
      4. Choose E-Mail Address under Claim Type.
    5. Click Finish.
    6. Create another claim rule and select the Transform an Incoming Claim template.
    7. In Configure Claim Rule:
      1. Enter a Claim rule name.
      2. Choose E-Mail Address under Incoming claim type.
      3. Choose Name ID under Outgoing claim type.
      4. Choose Email under Outgoing Name ID format.
    8. Select Pass through all claim value.
    9. Click Finish.

    Zoho CRM Training Programs

    Learn how to use the best tools for sales force automation and better customer engagement from Zoho's implementation specialists.

    Zoho CRM Training
      Redefine the way you work
      with Zoho Workplace

        Zoho DataPrep Personalized Demo

        If you'd like a personalized walk-through of our data preparation tool, please request a demo and we'll be happy to show you how to get the best out of Zoho DataPrep.

        Zoho CRM Training

          Create, share, and deliver

          beautiful slides from anywhere.

          Get Started Now


            Zoho Sign now offers specialized one-on-one training for both administrators and developers.

            BOOK A SESSION








                                You are currently viewing the help pages of Qntrl’s earlier version. Click here to view our latest version—Qntrl 3.0's help articles.




                                    Manage your brands on social media

                                      Zoho Desk Resources

                                      • Desk Community Learning Series


                                      • Digest


                                      • Functions


                                      • Meetups


                                      • Kbase


                                      • Resources


                                      • Glossary


                                      • Desk Marketplace


                                      • MVP Corner


                                      • Word of the Day


                                        Zoho Marketing Automation

                                          Zoho Sheet Resources

                                           

                                              Zoho Forms Resources


                                                Secure your business
                                                communication with Zoho Mail


                                                Mail on the move with
                                                Zoho Mail mobile application

                                                  Stay on top of your schedule
                                                  at all times


                                                  Carry your calendar with you
                                                  Anytime, anywhere




                                                        Zoho Sign Resources

                                                          Sign, Paperless!

                                                          Sign and send business documents on the go!

                                                          Get Started Now




                                                                  Zoho TeamInbox Resources



                                                                          Zoho DataPrep Resources



                                                                            Zoho DataPrep Demo

                                                                            Get a personalized demo or POC

                                                                            REGISTER NOW


                                                                              Design. Discuss. Deliver.

                                                                              Create visually engaging stories with Zoho Show.

                                                                              Get Started Now







                                                                                            You are currently viewing the help articles of Sprints 1.0. If you are a user of 2.0, please refer here.

                                                                                            You are currently viewing the help articles of Sprints 2.0. If you are a user of 1.0, please refer here.



                                                                                                  • Related Articles

                                                                                                  • Set up custom authentication for Zoho Directory

                                                                                                    Prerequisites Roles required to perform this action : Organization Owner Organization Admin Set up custom authentication for Zoho Directory: Custom authentication enables both SAML and JWT single sign-on (SSO) from your preferred identity providers ...
                                                                                                  • Custom authentication with OneLogin

                                                                                                    Prerequisites Roles required to perform this action : Organization Owner Organization Admin Custom authentication with OneLogin: Custom authentication with OneLogin enables SAML-based single sign-on (SSO) from OneLogin to Zoho. With SSO, you and your ...
                                                                                                  • Custom authentication with JumpCloud

                                                                                                    Prerequisites Roles required to perform this action : Organization Owner Organization Admin Custom authentication with JumpCloud: Custom authentication with JumpCloud enables SAML-based single sign-on (SSO) from JumpCloud to Zoho. With SSO, you and ...
                                                                                                  • Custom authentication with Auth0

                                                                                                    Prerequisites Roles required to perform this action : Organization Owner Organization Admin Custom authentication with Auth0: Custom authentication with Auth0 enables SAML-based single sign-on (SSO) from Auth0 to Zoho. With SSO, you and your ...
                                                                                                  • Custom authentication with Okta

                                                                                                    Prerequisites Roles required to perform this action : Organization Owner Organization Admin Custom authentication with Okta: Custom Authentication with Okta enables SAML-based single sign-on (SSO) from Okta to Zoho. With SSO, you and your employees ...
                                                                                                    Wherever you are is as good as
                                                                                                    your workplace

                                                                                                      Resources

                                                                                                      Videos

                                                                                                      Watch comprehensive videos on features and other important topics that will help you master Zoho CRM.



                                                                                                      eBooks

                                                                                                      Download free eBooks and access a range of topics to get deeper insight on successfully using Zoho CRM.



                                                                                                      Webinars

                                                                                                      Sign up for our webinars and learn the Zoho CRM basics, from customization to sales force automation and more.



                                                                                                      CRM Tips

                                                                                                      Make the most of Zoho CRM with these useful tips.



                                                                                                        Zoho Show Resources