Page tree

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

OnePACS now supports Single Sign-On (SSO) via SAML 2.0, enabling seamless and secure authentication through your organization's identity provider (IdP), such as Okta, Azure Active Directory, or other SAML-compatible services.

Benefits of Using SSO

  • Use Your Existing Credentials: Log into OnePACS with your corporate username and password.

  • Enhanced Security: Centralized authentication via your IdP supports stronger access controls, including MFA policies.

  • Improved User Experience: No need to manage a separate OnePACS password, fewer credentials to remember and reset.

🧩 Supported Identity Providers

OnePACS SAML SSO is compatible with major IdPs, including:

...

 Entity ID: The Entity ID for OnePACS is the same as the ACS URL for that IdP. 

📝 OnePACS Setup Requirements

To configure SSO for your organization:

...

Please reach out to our support team if you need assistance with setup.

🔐 Certificate for Signed Requests

To ensure secure SAML communication, OnePACS supports signed authentication requests. The X.509 certificate used to sign these requests is available directly within the Identity Provider configuration page.

Where to Find It:

  • Navigate to Admin > Identity Providers
  • Set up your IdP configuration within OnePACS; it will appear on the identity provider page
  • The Public Cert Column will be located in the grid associated with your new identity provider configuration
  • Hover over the column and click the copy button to capture the cert to place in the signed certificate section of your IdP

This certificate should be added to your IdP configuration to validate incoming signed requests from OnePACS.

🛠️ How It Works

Once SSO is configured for your account:

...