Configuring SAML for LearnUpon

REQUIRED ACCOUNT/PERMISSION LEVEL

Bitium: All account levels; must be an admin to set up

LearnUpon: Corporate account required; must be an admin to set up

In Bitium:

  1. Go to “Manage Apps.”

  2. Select “LearnUpon” from the list of installed apps.

  3. Select the “Single Sign-On” tab.

  4. From the dropdown, select “SAML Authentication.”

    Select SAML Authentication

Leave your Bitium window open and continue in a new tab.

In LearnUpon:

  1. Login to LearnUpon as an admin.

  2. Navigate to Settings > “Single Sign On - SAML”

    SAML in LearnUpon

    Access SAML settings

  3. Click “General Settings.”

  4. Check the “Enabled?”” box.

  5. Set the Version dropdown menu to 2.0.

  6. Set Skip Conditions to “No.”

  7. Type SAMLResponse in the “SAML Token POST param name” field.

  8. Type urn:oasis:names:tc:SAML:2.0:nameid-format:emailAddress in the “Name Identifier Format” field.

  9. Copy the Login URL from Bitium. Paste into the “Identity Provider Location (IDP SSO Target URL)” field in LearnUpon.

  10. Set the Unauthorized URL and Sign out URL to wherever you would like users to be redirected upon failing to sign in/signing out. You may use the Logout URL from Bitium for the Sign out URL. (optional).

  11. Click “Manage Fingerprints” in LearnUpon. Copy the Certificate Fingerprint from Bitium. Paste into the Fingerprint field in LearnUpon. Save.

    SAML in LearnUpon

    Fill in appropriate fields

  12. Save in LearnUpon.

  13. In Bitium, go back to the Single Sign-On tab for LearnUpon and click the “Save Changes” button.

Note: Under User Settings in LearnUpon, you have the option of enabling JIT provisioning. This allows you to assign LearnUpon to users in Bitium who do not have LearnUpon accounts, and LearnUpon accounts will be created for them upon authenticating into LearnUpon via SAML for the first time. Here are the steps to enable:

  1. Click the box Create Users if they do not exist in your portal.

  2. Type “FirstName” into the First Name Identifier Format field.

  3. Type “LastName” into the Last Name Identifier Format field.

    SAML in LearnUpon

    Setting up JIT provisioning

  4. Save in LearnUpon.

SAML Enabled will be illuminated in green once completed.