Business Problem
Your organization requires a seamless and secure access management solution for users accessing the Cloud Portal. The goal is to enable users to utilize their corporate user account credentials for authentication into the Cloud Portal while facilitating account management and setup processes. To achieve this, integration with Google’s Identity Provider is sought to implement Single Sign-On (SSO) and manage corporate user accounts using the SAML federation protocol.
Requirements
- Access to an Infor Cloud Portal
- User privileges for Infor Federated Service (IFS) User Management with the following roles:
- Optional Infor U courses:
- Infor OS: Identity and Access Management Fundamentals Workshop
Tutorial
Difficulty: Medium
Estimated completion time: 30 Minutes
Infor Cloud (specifically inforSTS or Infor Security Token Service) offers the possibility of federation with the Google Identity Provider. This integration allows access to corporate user accounts and facilitates Single Sign-On (SSO) functionality for accessing the Infor Cloud Portal and associated enterprise applications. Infor’s support for the SAML 2.0 protocol aligns seamlessly with Google Identity Provider federations. Additionally, the Cloud portal streamlines user provisioning through the SCIM (System for Cross-domain Identity Management) interface, with compatibility ensured with the Google identity provider’s SCIM capabilities.
IFS Federated Security and the Federation Hub handles the Cloud’s Federation between Cloud Portal and Google Identity Provider.
Business Objectives
- Enhanced Security: Strengthening authentication mechanisms through SAML Federation with Google Identity Provider bolsters security measures, mitigating risks associated with unauthorized access, data breaches, and cyber threats. By centralizing authentication processes and leveraging Google’s robust security features, the organization can safeguard sensitive data and protect against potential vulnerabilities
- Improved User Experience: Simplifying authentication processes and providing a seamless login experience contributes to enhanced user satisfaction. By eliminating the need for multiple sets of credentials and reducing authentication barriers, users can navigate the Cloud Portal and associated applications more efficiently, leading to increased user adoption and engagement.
- Streamlined Access Management: The integration facilitates Single Sign-On (SSO) capabilities, enabling users to access the Cloud Portal and enterprise applications seamlessly using their corporate credentials. This streamlines access management processes, reduces password fatigue, and enhances user experience, ultimately boosting productivity and operational efficiency.
Interested in setting up Single Sign-On (SSO) using SAML with Google within Infor Federation Services and seeking guidance on the process:
In this video, we’ll walk you through the process of setting up SAML (Security Assertion Markup Language) federation between the Infor Cloud Application and the Google Identity provider. Once the configuration is complete, users will have the capability to log in to the Infor Cloud Application and other federated applications using Google authentication.
You are now equipped to configure authentication and establish federation between the Cloud Portal and Google’s Identity provider (IdP).
Resources
Help Documents on configuring the Google SAML Federation with Infor Cloud Portal
- Prerequisites and basic parameters
- Exporting Infor CloudSuite Metadata
- Adding Infor CloudSuite to Google G-Suite
- Adding Google G-Suite configuration to Infor CloudSuite
- Google G-Suite user provisioning to Infor CloudSuite
- Enabling Google G-Suite as IDP in Infor CloudSuite
- Testing
Other Federated Security Configurations
To explore additional Identity provider federations and SCIM user provisioning setups, feel free to explore the Security and User Management with Infor Federation Services playlist.