Configuring Cloudwork (StudentNet) for EdSmart SAML Single Sign-On (SSO)

The following instructions walk through the configuration steps required to set up SAML2 based SSO between EdSmart and Cloudwork.

 

  1. Obtain EdSmart’s SAML Service Provider configuration from the following link: metadata.xml

 

2. Log in to your Cloudwork instance and click “Single Sign-On”.

3. Click “Add New Service” add the top

4. Search for “Custom SAML Service”

5. In the “New Service Metadata” page, add EdSmart SP configuration as provided in metadata.xml

Note that for “Login URL” on this page, you need to contact EdSmart for your own login URL address, you can leave it blank for the moment. The value in the screenshot is for instruction only.

6. Share your SAML SSO metadata with EdSmart. The metadata is available in the “XML File” section. You can send us the URL link (preferred option), or download the full XML and send that as a file.

7. Back to the “Service List” and click the service you just created.

8. Click “Edit” in “SAML Config” section

9. Make sure that you choose “HTTP-Redirect” for “Single Logout Service”, and add two certs in (one for signing, the other for encryption). Import certificates with a format of

-----BEGIN CERTIFICATE-----
Certificate value
-----END CERTIFICATE-----

After that, click “submit”.

10. In the “Attribute Map”, ensure that sn, givenName, mail, role are in the list.

11. Finally, provide EdSmart with a test username and password that we can use to verify and troubleshoot the SSO integration.