Prerequisites
- A Premium or Enterprise account with Envoy
- Sign in to the Zoho One Admin Panel.
- Go to Marketplace, then use the search bar to find and install Envoy.
- Name your app and enter your App ID.
Note: To find your App ID, sign in to Envoy, click Integrations from the sidebar, then click Install under SAML. You can find the App ID inside the Sign On URL (SP-initiated only), in the following format:
https://app.envoy.com/a/saml/auth/{App ID}
- If you want to test the SAML configuration before allowing users to access Envoy, uncheck Display app to users.
- Click Add.
- Click Manage Application, then Single Sign-On.
- Click Service Provider Details to check and verify the SP details. You can also edit them, if needed.
- Click Identity Provider Details, then make a note of the Sign-in URL and the Fingerprint (sha-1).
- Sign in to your Envoy account.
- Click Integrations in the sidebar, then click Install under SAML.
- Enter the IdP Sign-in URL in the IDENTITY PROVIDER HTTP SAML URL field, and the IdP Fingerprint (sha-1) in the FINGERPRINT field.
- Click Save.
Test the SAML connection
- Return to the Zoho One Admin Panel.
- Go to Applications, then click Envoy.
- Click Assign Users, choose yourself from the list, then click Assign.
- Click . If everything is working, you should be automatically signed in and taken to Envoy's homepage.
Enforce SAML SSO
After successfully testing SSO, you can enforce it for all users. Once this is done, your users will no longer be able to sign in using their Envoy credentials. To restrict users to SSO:
- Sign in to your Envoy account.
- Click Integrations in the sidebar, then click Enabled Integrations.
- Click Configure under SAML.
- Toggle Required.
- Click Save.
Make app visible to all users
After successfully testing the SSO, you can make Envoy available for all users to access from their My Apps pages.
To make Envoy visible to all users:
- Sign in to the Zoho One Admin Panel.
- Go to Applications, then click Envoy.
- Click Edit, check Display app to users, then click Update.
- You can now access Envoy from Zoho One's My Apps page.