Single sign-on (SSO) allows your users to log in to your application using their existing SAML-enabled ID provider, such as EntraID, OneLogin, Okta, and many more.
Your account's Governance policy determines what authentication methods you can configure for an application. An account administrator with the governance role can turn on the ability to configure SAML for applications.
Click any of the following links to skip ahead:
How it works
When a user accesses an application, they will be presented with the option to authenticate to the application via SSO. If they are already logged in through the provider, they will be logged in automatically.
Enable SSO for your application
From your application in Aha! Builder, navigate to Configuration -> Authentication.
Next to Custom SSO (SAML, JWT), select Add provider. Then select SAML.
Add a Name for the SSO configuration and select Create provider.
The SAML configuration will display. You will use the information you find here to configure your SAML identity provider.
Click Enable SSO to complete the configuration. The integration window will close.
Configure your SAML identity provider
The last step in configuring your ideas portal for SAML 2.0 SSO is to configure your identity provider so that it will send your Aha! account the right information. Particularly, you should ensure that the identity provider is sending the right user attributes to your Aha! Builder application:
EmailAddress
FirstName
LastName
-
NameID
We strongly recommend using a persistent, unique identifier in this field rather than the user's email address.
Your Aha! account uses these attributes to identify users and match them to users in your Aha! account or ideas portal.
In Aha! Builder, open the configuration you just created so it is available for easy reference.
In a separate browser window or tab, log in to your SAML identity provider.
Configure your SAML identity provider.
Save the configuration.
There are many SAML SSO identity providers. How you configure SAML within your identity provider depends on their requirements. Setting up SSO for your Aha! Builder application is similar to setting it up for an Aha! ideas portal. If you get stuck, check out our articles for setting up SSO for ideas portals for the following identity providers:
Share your SSO configuration across applications
Once you set up an SSO configuration, you can use it for any application in your account.
Open the application in Aha! Builder and go to Configuration -> Authentication.
Find the SSO configuration and click the toggle to enable it.