Custom Authentication - ADFS | Admin Guide - Zoho One

Custom authentication with ADFS

Custom authentication with ADFS enables SAML-based single sign-on (SSO) from ADFS to Zoho One. With SSO, you and your employees can sign in to ADFS and access Zoho One directly, without having to sign in to Zoho One.

To set up custom authentication with ADFS:
A. Obtain the Sign-in URL, Sign-out URL, and the certificate from ADFS:
  1. Sign in to ADFS 3.0 server and open the Management Console.
  2. Right-click Service in the left-pane menu, then choose Edit Federation Service Properties.  
  3. Under General, ensure that your DNS entries and certificate names are correct.
  4. Using your Federation Service name, use a browser and go to "https://{federationservicename}.com/federationMetaData/2007-06/FederationMetaData.xml".
  5. The Sign-in URL and Sign-out URL are present in the XML file as SingleSignOnService and SingleLogoutService tags respectively.
  6. Export the Token-Signing certificate:
    1. Right-click Certificate in the left-pane menu and click View Certificate.
    2. Click the Details tab.
    3. Click Copy to File, then click Next.
    4. Make sure No, do not export the private key is selected, then click Next.
    5. Select  Base-64 encoded X.509 (.cer), then click Next.
    6. Choose where to save the file and name it.
    7. Click Next.
    8. Select Finish
  7. Submit this data to Zoho to set up SAML in Zoho One.
B. Add a Relying Party Trust:
  1. Under Trust Relationships in the left-pane menu, right-click Relying Party Trusts, then click Add Relying Party Trust.
  2. In Select Data Source, select Enter Data about the relying party manually.
  3. In Specify Display Name, enter "zoho.com" as the Display Name.
  4. In Choose Profile, select AD FS profile.
  5. Click Next.
  6. In Configure URL, check the Enable support for the SAML 2.0 WebSSO protocol.
  7. Enter the ACS URL. You can find the ACS URL in Zoho One's Custom Authentication page. Copy and paste it in the respective IdP to complete the configuration.
  8. In Configure Identifiers, choose one.zoho.com as the Relying Party Trust Identifier.
  9. In Configure Multi-factor Authentication now, choose I do not want to configure multi-factor authentication settings for this relying party trust at this time .
  10. In Choose Issuance Authorization Rules, select Permit all users to access this relying party.
  11. Click Close.
C. Create claim rules:
You can create claim rules once the relying party trust is created. By default, the Claims Rule editor opens once you create a trust.
  1. Click Add Rule to create a new rule. 
  2. In Choose Rule Type, select Send LDAP Attributes as Claims in the dropdown menu.
  3. Click Next.
  4. In Configure Claim Rule:
    1. Enter a Claim rule name.
    2. Choose Active directory under Attribute Store.
    3. Choose E-Mail Addresses under LDAP Attribute.
    4. Choose E-Mail Address under Claim Type.
  5. Click Finish.
  6. Create another claim rule and select the Transform an Incoming Claim template.
  7. In Configure Claim Rule:
    1. Enter a Claim rule name
    2. Choose E-Mail Address under Incoming claim type.
    3. Choose Name ID under Outgoing claim type.
    4. Choose Email under Outgoing Name ID format.
  8. Select Pass through all claim value.
  9. Click Finish.

    Zoho CRM Training Programs

    Learn how to use the best tools for sales force automation and better customer engagement from Zoho's implementation specialists.

    Zoho CRM Training
      Redefine the way you work
      with Zoho Workplace

        Zoho DataPrep Personalized Demo

        If you'd like a personalized walk-through of our data preparation tool, please request a demo and we'll be happy to show you how to get the best out of Zoho DataPrep.

        Zoho CRM Training

          Create, share, and deliver

          beautiful slides from anywhere.

          Get Started Now


            Zoho Sign now offers specialized one-on-one training for both administrators and developers.

            BOOK A SESSION








                                    You are currently viewing the help pages of Qntrl’s earlier version. Click here to view our latest version—Qntrl 3.0's help articles.




                                        Manage your brands on social media

                                          Zoho Desk Resources

                                          • Desk Community Learning Series


                                          • Digest


                                          • Functions


                                          • Meetups


                                          • Kbase


                                          • Resources


                                          • Glossary


                                          • Desk Marketplace


                                          • MVP Corner


                                          • Word of the Day


                                            Zoho Marketing Automation

                                              Zoho Sheet Resources

                                               

                                                  Zoho Forms Resources


                                                    Secure your business
                                                    communication with Zoho Mail


                                                    Mail on the move with
                                                    Zoho Mail mobile application

                                                      Stay on top of your schedule
                                                      at all times


                                                      Carry your calendar with you
                                                      Anytime, anywhere




                                                            Zoho Sign Resources

                                                              Sign, Paperless!

                                                              Sign and send business documents on the go!

                                                              Get Started Now




                                                                      Zoho TeamInbox Resources



                                                                              Zoho DataPrep Resources



                                                                                Zoho DataPrep Demo

                                                                                Get a personalized demo or POC

                                                                                REGISTER NOW


                                                                                  Design. Discuss. Deliver.

                                                                                  Create visually engaging stories with Zoho Show.

                                                                                  Get Started Now









                                                                                                      • Related Articles

                                                                                                      • Custom authentication with PingOne

                                                                                                        Configure SAML with PingOne  Go to PingOne. In the Select Account dropdown menu, select PingOne. Enter your email address, then click SIGN ON. Enter your password, then click Sign On. Click the dropdown menu in the left pane under Environments, then ...
                                                                                                      • Custom authentication with miniOrange

                                                                                                         Configure SAML with miniOrange  Sign in to the miniOrange admin console. Click Apps in the left menu, then click Add Application. In the Choose Application Type page, click SAML/WS-FED. In the displayed list of apps, search and select Zoho. You will ...
                                                                                                      • Set up custom authentication for Zoho One

                                                                                                        Custom authentication enables both SAML and JWT single sign-on (SSO) from your preferred identity providers (such as Okta or OneLogin) to Zoho One. You can set up custom authentication for a specific user group or all users in the organization.    ...
                                                                                                      • Custom authentication with OneLogin

                                                                                                        Custom authentication with OneLogin enables SAML-based single sign-on (SSO) from OneLogin to Zoho One. With SSO, you and your employees can sign in to OneLogin and access Zoho One directly, without having to sign in to Zoho One. To set up custom ...
                                                                                                      • Custom authentication with JumpCloud

                                                                                                        Custom authentication with JumpCloud enables SAML-based single sign-on (SSO) from JumpCloud to Zoho One. With SSO, you and your employees can sign in to JumpCloud and access Zoho One directly, without having to sign in to Zoho One. To set up custom ...
                                                                                                        Wherever you are is as good as
                                                                                                        your workplace

                                                                                                          Resources

                                                                                                          Videos

                                                                                                          Watch comprehensive videos on features and other important topics that will help you master Zoho CRM.



                                                                                                          eBooks

                                                                                                          Download free eBooks and access a range of topics to get deeper insight on successfully using Zoho CRM.



                                                                                                          Webinars

                                                                                                          Sign up for our webinars and learn the Zoho CRM basics, from customization to sales force automation and more.



                                                                                                          CRM Tips

                                                                                                          Make the most of Zoho CRM with these useful tips.



                                                                                                            Zoho Show Resources