Setting up PingOne as your identity provider
note
The instructions in this section are for a sample configuration. For more information about any IdP settings that are not covered, refer to PingOne.
- In a different browser tab, log in to the Ping One Admin Console.
- Go to Connections > Applications, and select the plus icon .
- Select Web App, and for SAML select Configure.
- On the Create App Profile page, specify a name for your UiPath app.
- On the Configure SAML Connection page, select Manually Enter and provide the following details:
- ACS URLs: Enter the Assertion Consumer Service URL value you got from UiPath.
- Entity ID: Enter the Entity ID value you got from UiPath.
- SLO binding:HTTP Redirect
- Assertion Validity Duration: Enter the number of seconds for the validity period.
- Select Save and Continue.
- On the Map Attributes page, add the email address:
- Select + Add Attribute.
- For Application Attribute, enter
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/emailaddress. Thehttp://schemas.xmlsoap.org/ws/2005/05/identity/claims/emailaddressclaim is case-sensitive. - Set Outgoing Value to Email Address, or the user attribute that contains the user's unique email address.
- Select the Required checkbox.
- Optionally add other attribute mappings. UiPath also supports the First Name, Last Name, Job Title, and Department user attributes. The attributes are case sensitive. This information is then propagated to UiPath, where it can be made available to other services, such as Automation Hub.
- Select Save and Close.
- Turn on the toggle for the UiPath app to enable the application for user access.
- On the Configuration tab, copy and save the IdP Metadata URL value for later use.