Custom Authentication - ADFS | Admin Guide - Zoho One

Custom authentication with ADFS

Custom authentication with ADFS enables SAML-based single sign-on (SSO) from ADFS to Zoho One. With SSO, you and your employees can sign in to ADFS and access Zoho One directly, without having to sign in to Zoho One.

To set up custom authentication with ADFS:
A. Obtain the Sign-in URL, Sign-out URL, and the certificate from ADFS:
  1. Sign in to ADFS 3.0 server and open the Management Console.
  2. Right-click Service in the left-pane menu, then choose Edit Federation Service Properties.  
  3. Under General, ensure that your DNS entries and certificate names are correct.
  4. Using your Federation Service name, use a browser and go to "https://{federationservicename}.com/federationMetaData/2007-06/FederationMetaData.xml".
  5. The Sign-in URL and Sign-out URL are present in the XML file as SingleSignOnService and SingleLogoutService tags respectively.
  6. Export the Token-Signing certificate:
    1. Right-click Certificate in the left-pane menu and click View Certificate.
    2. Click the Details tab.
    3. Click Copy to File, then click Next.
    4. Make sure No, do not export the private key is selected, then click Next.
    5. Select  Base-64 encoded X.509 (.cer), then click Next.
    6. Choose where to save the file and name it.
    7. Click Next.
    8. Select Finish
  7. Submit this data to Zoho to set up SAML in Zoho One.
B. Add a Relying Party Trust:
  1. Under Trust Relationships in the left-pane menu, right-click Relying Party Trusts, then click Add Relying Party Trust.
  2. In Select Data Source, select Enter Data about the relying party manually.
  3. In Specify Display Name, enter "zoho.com" as the Display Name.
  4. In Choose Profile, select AD FS profile.
  5. Click Next.
  6. In Configure URL, check the Enable support for the SAML 2.0 WebSSO protocol.
  7. Enter the ACS URL. You can find the ACS URL in Zoho One's Custom Authentication page. Copy and paste it in the respective IdP to complete the configuration.
  8. In Configure Identifiers, choose one.zoho.com as the Relying Party Trust Identifier.
  9. In Configure Multi-factor Authentication now, choose I do not want to configure multi-factor authentication settings for this relying party trust at this time .
  10. In Choose Issuance Authorization Rules, select Permit all users to access this relying party.
  11. Click Close.
C. Create claim rules:
You can create claim rules once the relying party trust is created. By default, the Claims Rule editor opens once you create a trust.
  1. Click Add Rule to create a new rule. 
  2. In Choose Rule Type, select Send LDAP Attributes as Claims in the dropdown menu.
  3. Click Next.
  4. In Configure Claim Rule:
    1. Enter a Claim rule name.
    2. Choose Active directory under Attribute Store.
    3. Choose E-Mail Addresses under LDAP Attribute.
    4. Choose E-Mail Address under Claim Type.
  5. Click Finish.
  6. Create another claim rule and select the Transform an Incoming Claim template.
  7. In Configure Claim Rule:
    1. Enter a Claim rule name
    2. Choose E-Mail Address under Incoming claim type.
    3. Choose Name ID under Outgoing claim type.
    4. Choose Email under Outgoing Name ID format.
  8. Select Pass through all claim value.
  9. Click Finish.

    Access your files securely from anywhere

      Zoho CRM Training Programs

      Learn how to use the best tools for sales force automation and better customer engagement from Zoho's implementation specialists.

      Zoho CRM Training
        Redefine the way you work
        with Zoho Workplace

          Zoho DataPrep Personalized Demo

          If you'd like a personalized walk-through of our data preparation tool, please request a demo and we'll be happy to show you how to get the best out of Zoho DataPrep.

          Zoho CRM Training

            Create, share, and deliver

            beautiful slides from anywhere.

            Get Started Now


              Zoho Sign now offers specialized one-on-one training for both administrators and developers.

              BOOK A SESSION









                                            You are currently viewing the help pages of Qntrl’s earlier version. Click here to view our latest version—Qntrl 3.0's help articles.




                                                Manage your brands on social media

                                                  Zoho Desk Resources

                                                  • Desk Community Learning Series


                                                  • Digest


                                                  • Functions


                                                  • Meetups


                                                  • Kbase


                                                  • Resources


                                                  • Glossary


                                                  • Desk Marketplace


                                                  • MVP Corner


                                                  • Word of the Day


                                                    Zoho Marketing Automation

                                                      Zoho Sheet Resources

                                                       

                                                          Zoho Forms Resources


                                                            Secure your business
                                                            communication with Zoho Mail


                                                            Mail on the move with
                                                            Zoho Mail mobile application

                                                              Stay on top of your schedule
                                                              at all times


                                                              Carry your calendar with you
                                                              Anytime, anywhere




                                                                    Zoho Sign Resources

                                                                      Sign, Paperless!

                                                                      Sign and send business documents on the go!

                                                                      Get Started Now




                                                                              Zoho TeamInbox Resources



                                                                                      Zoho DataPrep Resources



                                                                                        Zoho DataPrep Demo

                                                                                        Get a personalized demo or POC

                                                                                        REGISTER NOW


                                                                                          Design. Discuss. Deliver.

                                                                                          Create visually engaging stories with Zoho Show.

                                                                                          Get Started Now









                                                                                                              • Related Articles

                                                                                                              • Custom authentication with PingOne

                                                                                                                Configure SAML with PingOne  Go to PingOne. In the Select Account dropdown menu, select PingOne. Enter your email address, then click SIGN ON. Enter your password, then click Sign On. Click the dropdown menu in the left pane under Environments, then ...
                                                                                                              • Custom authentication with miniOrange

                                                                                                                 Configure SAML with miniOrange  Sign in to the miniOrange admin console. Click Apps in the left menu, then click Add Application. In the Choose Application Type page, click SAML/WS-FED. In the displayed list of apps, search and select Zoho. You will ...
                                                                                                              • Custom authentication with OneLogin

                                                                                                                Custom authentication with OneLogin enables SAML-based single sign-on (SSO) from OneLogin to Zoho One. With SSO, you and your employees can sign in to OneLogin and access Zoho One directly, without having to sign in to Zoho One. To set up custom ...
                                                                                                              • Custom authentication with JumpCloud

                                                                                                                Custom authentication with JumpCloud enables SAML-based single sign-on (SSO) from JumpCloud to Zoho One. With SSO, you and your employees can sign in to JumpCloud and access Zoho One directly, without having to sign in to Zoho One. To set up custom ...
                                                                                                              • Custom authentication with Okta

                                                                                                                Custom authentication with Okta enables SAML-based single sign-on (SSO) from Okta to Zoho One. With SSO, you and your employees can sign in to Okta and access Zoho One directly, without having to sign in to Zoho One. To set up custom authentication ...
                                                                                                                Wherever you are is as good as
                                                                                                                your workplace

                                                                                                                  Resources

                                                                                                                  Videos

                                                                                                                  Watch comprehensive videos on features and other important topics that will help you master Zoho CRM.



                                                                                                                  eBooks

                                                                                                                  Download free eBooks and access a range of topics to get deeper insight on successfully using Zoho CRM.



                                                                                                                  Webinars

                                                                                                                  Sign up for our webinars and learn the Zoho CRM basics, from customization to sales force automation and more.



                                                                                                                  CRM Tips

                                                                                                                  Make the most of Zoho CRM with these useful tips.



                                                                                                                    Zoho Show Resources