Custom authentication with PhenixID
Custom authentication with PhenixID enables you and your employees to sign in and access Zoho One using your PhenixID credentials.
Prerequisite
- PhenixID authentication server version 3.0 or higher.
To set up custom authentication with PhenixID, you need to configure an authentication scenario in PhenixID as follows:
- Sign in to PhenixID Configuration Manager.
Click SCENARIOS at the top, then click FEDERATION.
Field
| Value
|
SEARCH FILTER
| mail={{request.username}}
|
USER IDENTIFIER ATTRIBUTE
| mail
|
Once created, select the scenario from the left menu, then go to the EXECUTION FLOW tab.
- Click Find userid & issue SAML assertion, then click AssertionProvider.
- Under MISCELLANEOUS, click Add to create a new field.
Enter nameIdFormat in the left field, and urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress in the right field.
- Click Save.
- Switch to the IDENTITY PROVIDER tab.
In the POST SLO URL field, enter the SLO url in the following format:
https://{host name}.phenixid.net/saml/authenticate/logout
Note: The {host name} represents the name of your domain. For example, if the URL of your PhenixID account is https://zylker.phenixid.net/, your host name would be "zylker". - Click Save.
Note down the POST SSO URL and the POST SLO URL.
- Click View SAML Metadata to open the Identity Provider(IdP) metadata file.
- Export and save the certificate metadata by creating a .cert file.
- Enter the POST SSO URL under Sign-in URL and Change Password URL.
- Enter the POST SLO URL under Sign-out URL.
- Upload the .cert file under Verification Certificate.
B. You need an SP metadata file to set up Zoho One as Service Provider (SP) in PhenixID. You can get the SP metadata file from your Zoho account:
- Sign in to Zoho Accounts.
- Click Organization in the left menu, then click SAML Authentication.
- Click Download Metadata to download the zohometadata.xml file (SP metadata).
C. Configure Zoho One as SP in PhenixID using the following steps:
- Return to the FEDERATION tab in PhenixID Configuration Manager.
- From the left menu, click next to SAML metadata upload.
- Enter a name for the new scenario, add a short description (if needed), then click Next.
- Under METADATA UPLOAD, upload the SP metadata file (zohometadata.xml).
- Click Verify and show, then click OK.
- Click Next, then click Create.
- Test the configuration by signing out of your Zoho account, and then signing in. If the configuration is successful, you will be redirected to PhenixID for authentication.
Related Articles
Custom authentication with PingOne
Configure SAML with PingOne Go to PingOne. In the Select Account dropdown menu, select PingOne. Enter your email address, then click SIGN ON. Enter your password, then click Sign On. Click the dropdown menu in the left pane under Environments, then ...
Custom authentication with miniOrange
Configure SAML with miniOrange Sign in to the miniOrange admin console. Click Apps in the left menu, then click Add Application. Click Create App under SAML/WS-FED. Select Zoho from the apps displayed. You will land in the Basic Settings page. Type ...
Custom authentication with OneLogin
Custom authentication with OneLogin enables SAML-based single sign-on (SSO) from OneLogin to Zoho One. With SSO, you and your employees can sign in to OneLogin and access Zoho One directly, without having to sign in to Zoho One. To set up custom ...
Custom authentication with Google
Custom authentication with Google enables SAML-based single sign-on (SSO) from Google to Zoho One. With SSO, you and your employees can sign in to Google and access Zoho One directly, without having to sign in to Zoho One. To set up custom ...
Custom authentication with JumpCloud
Custom authentication with JumpCloud enables SAML-based single sign-on (SSO) from JumpCloud to Zoho One. With SSO, you and your employees can sign in to JumpCloud and access Zoho One directly, without having to sign in to Zoho One. To set up custom ...