Has there been a successful Jamf Single Sign-On (SSO) implementation using a Jamf account?

happy02
New Contributor III

 

Hi

 

https://learn.jamf.com/en-US/bundle/jamf-account-documentation/page/Jamf_SSO_with_Jamf_Account.html

Use this guide to configure your Microsoft Entra ID
I'm in the process of doing something and it says it's connected, but I can't see the IDP redirection page. Can you share any success stories?

8 REPLIES 8

RaGL
New Contributor III

Hi,

we implemented it successfully.

In Jamf Account it looks like the following:

RaGL_0-1720097881673.jpeg

And when logging in to Jamf Account it looks like the following:

RaGL_1-1720097901685.jpeg

 

happy02
New Contributor III

That's great! Can I get an explanation of how you set it up or the item value?

RaGL
New Contributor III

I assume you already verified the domain, right?
Besides that, which steps or item values do you want to see?

FYI, I didn't do the configuration in our IdP Portal, as this is with another department.

happy02
New Contributor III

IMG_2887.jpeg

IMG_2888.jpeg

IMG_2889.jpeg

  

 

I don't work as successfully as you do even if I type setup > domain authentication > attached screenshot from the intra console.. (Didn't you set intra?)

RaGL
New Contributor III

We're using Entra ID as IdP, but back when we implemented it, we didn't have the option to specify, if I remember correctly. That's why the Connection Type is set to "Generic OIDC".

happy02
New Contributor III

https://www.youtube.com/watch?v=k9QWio-GHJQ&ab_channel=JamfTrainingandSupport

 

Then, after setting the entra id like the guide video in the link I attached, can I designate the sso connection top idp as generic oidc instead of entra?

RaGL
New Contributor III

As it is working for us, I would say yes, but as there is the "Entra ID" option, going for "Generic OIDC" might not be the perfect way.

happy02
New Contributor III

IMG_2891.jpeg

I see. I'll test it as you said. I attached additional pictures, 1. Microsoft Entra AD Domain, 2. Should I leave it blank or enter a value for Tenant Domain?