Skip to main content

Learn about setting up SSO in StorageGRID using SAML

Contributors netapp-pcarriga

Setting up single sign-on (SSO) in StorageGRID allows StorageGRID (the service provider) and the SSO identity provider to communicate securely about user authentication requests.

You can set up SSO in StorageGRID using OpenID Connect (OIDC) or SAML. Follow these high-level steps to set up SSO in StorageGRID using SAML or learn about setting up SSO using OIDC.

One Configure SSO

Select the Configure SSO wizard for SAML. Then, configure SSO with your identity provider and enter sandbox mode.

Two Configure identity provider

Based on the SSO identity provider you plan to use, you can select either Active Directory or Entra ID for the identity federation LDAP service type.

  • For Active Directory Federation Service (AD FS), you can use the AD FS, Entra ID, or PingFederate identity provider.

  • For Entra ID, you can only use the Entra ID identity provider.

Use the SSO identity provider's software to configure SAML for each Admin Node in your grid.

Three Test configuration

After configuring SAML for each Admin Node, return to the Configure SSO wizard and test the configuration.

Four Enable SSO

Enable SSO for all StorageGRID users.