Using PingOne for Enterprise as IDP

This guide provides intructions on how to integrate PingOne for Enterprise IDP with Jitsuin Archivist.

Before starting:

Steps:

  1. Log into PingOne for Enterprise and navigate to “My Applications”

  2. Add a new OIDC application and follow the steps below

  3. Select application type “Web App” and click Next

pingone_wizard_step_oidc

  1. (Wizard Step 1) Provide application details as desired (i.e. Application name: Archivist)

pingone_wizard_step_1

  1. (Wizard Step 2) Configure authorization settings

  1. Enable “Refresh Token”

  2. Click the “Add Secret” button

  3. Send the client ID and client secret to Jitsuin. These are needed to complete the integration in the hosted Archivist application

  4. Leave other values default or set as desired

pingone_wizard_step_2

  1. (Wizard Step 3) Enter the unique URLs as provided by Jitsuin

pingone_wizard_step_3

  1. (Wizard Step 4) Click Next

pingone_wizard_step_4

  1. (Wizard Step 5) Add Email scope to Connected scopes

pingone_wizard_step_5

  1. (Wizard Step 6) Select “Email” for email attribute mapping and “Id” for sub attribute mapping

pingone_wizard_step_6

  1. (Wizard Step 7) Add appropriate groups to allow desired access for users

pingone_wizard_step_7

Once Jitsuin has received the client ID and secret the connection will be completed and the Archivist app will be available on the URL provided using SSO login credentials.