Ping Identity provides federated identity management and self-hosted identity access management (IAM) solutions to web identities and single sign-on solutions. webinar.net's Ping Identity SAML SSO integration is an XML-based standard for exchanging authentication and authorization data between the identity provider (IdP) Ping Identity, and webinar.net (SP), allowing for a Single Sign-On (SSO) experience.
Create Ping Application
The integration with Ping Identity starts with the creating of a Ping Application.
Select SAML Application for the Application Type.
In SAML Configuration, select "Manually Enter" with the following values:
ACS URL
Note: If you are setting up an app for testing on webinar.net stage sandbox, use https://identity.webinarstage.net/saml/sso
Entity ID
net.webinar:sp
Note: If you are setting up an app for testing on webinar.net stage sandbox, use net.webinarstage:sp.
SAML Configuration
Once the application is saved, click on Protocol: SAML to edit the SAML configuration.
Then in the SIGNING KEY section, choose "Sign Assertion & Response".
Signing Algorithm
RSA_SHA256
In ENCRYPTION Section, choose "Enable Encryption".
ALGORITHM
AES_256
CERTIFICATE
Download the certificate from here https://cdn.webinar.net/saml-certificates/webinar.net.cer.
Note: If you are setting up an app for testing on webinar.net stage sandbox, use
SUBJECT NAMEID FORMAT
urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress
Select "Enforce Signed AuthnRequest"
VERIFICATION CERTIFICATE
Download the certificate from here https://cdn.webinar.net/saml-certificates/webinar.net.cer.
Note: If you are setting up an app for testing on webinar.net stage sandbox, use
Attribute Mappings
Go to Attribute Mappings and add the following mappings.
saml_subject > Email Address
FirstName > Given Name
LastName > Family Name
All the mappings are required.
Enable Application
One last thing, make sure this application is enabled.
Download Metadata and Signing Certificate
Go to the Configuration tab and download metadata and signing certificate. Send these two files to webinar.net team for setting up IdP on webinar.net side.
Audience SAML SSO
On webinar.net side, if SAML SSO for audiences is included in your subscription, you will see the 'Enable SAML Single-Sign-On' checkbox on the Create Webinar page. Enable this option will limit the access of the webinar via SAML SSO only. Registrations will be disabled accordingly.
For further assistance, contact us through chat or send us an email at support@webinar.net