1. In Expel Workbench, navigate to Organization Settings > My Organization and select the organization.

  2. On the Integrations tab, click Single Sign-on > Configure SSO.

  3. Copy and paste the following from Expel Workbench into your SSO provider:

    • ACS URL or Single Sign-on URL: This can be called an Assertion Consumer Service URL or Redirect URL.

    • Audience URI or Audience: This can be called SP Entity or SP Entity ID.

    • ACS URI Validator: This may not be required, depending on your SSO provider.

    • Leave Yes, allow users to log in locally OR via SSO selected for local logins. This makes initial SSO setup easier. You can change this later.

  4. In your SSO provider, set up an email parameter or attribute.

    The attribute name in Workbench is case sensitive, so make sure the attribute name is email, and not Email. To ensure this, you may need to create a custom attribute. Refer to your SSO provider’s documentation to complete this step.

  5. Copy and paste the appropriate information from your SSO provider into Expel Workbench.

    • Single Sign-On URL or SAML 2.0 Endpoint: this can be called the Login URL.

    • Issuer or Issuer ID: this can be called Identity Provider Issuer or Entity ID.

    • Certificate: this can be copy and pasted or uploaded as an attachment.