SAML Support Now Available for CloudBees Platform

Written by: Drew Piland
2 min read

Instantly and securely provision users with SAML SSO

We are excited to announce that SAML support is now available on the CloudBees Platform, further enhancing our enterprise integration capabilities.

SAML (Security Assertion Markup Language) is an open standard for exchanging authentication and authorization data between an identity provider and a service provider. With SAML, users authenticate once with their IdP (such as Okta or Google). They can access multiple applications using a single set of credentials, enhancing security, simplifying administration, and providing a seamless user experience.

Implementing SAML on CloudBees

Platform Admins can now create a new SAML connection to their tenant's identity provider to enable users' SSO.  Getting started is straightforward. For complete details, visit docs

Configure Your Identity Provider

Set up your IdP with the necessary configurations to communicate with the CloudBees platform. To set up the domain and SAML connection, navigate Admin Settings → Authentications → Domains → Create SAML. Next, platform admins must set up the SAML connection, which requires them both to validate they own the domain they want to use and requires them to locate the metadata XML from their IdP used to authenticate their users.

Enable SAML in CloudBees

Once the domain has been verified, you can set the connection to meet your desired settings. Navigate to the CloudBees Platform settings and activate SAML integration. There are two modes: strict and auto-provisioning.

  1. Strict mode requires all users to your domain to sign in to the tenant org via SAML. To disable the invite button, strict mode must be enabled alongside auto-provisioning.

  2. Auto-provisioning provides flexibility and eases the provisioning of new users. When enabled, users are automatically added when they try to sign in with a SAML-enabled domain. When disabled, Platform Admins must manually invite new users to your tenant, but you can still use SAML to connect.

Test and Deploy

Perform thorough testing to ensure SAML authentication works correctly. Once verified, roll out the integration to your entire organization.

Once completed, Platform Admins can go back and update a SAML configuration.

Summary

SAML Support is now available for the CloudBees platform and supports all identity providers. All plans can access SAML, but dedicated support requires a paid plan. The admin role is required to set up SAML connections.

Get started with the CloudBees platform for free at cloudbees.io.

For more information on SAML support, visit docs.

Stay up to date

We'll never share your email address and you can opt out at any time, we promise.