Configure SSO from Salesforce to Mimeo
Let your users log in to Mimeo using single sign-on (SSO) from your Salesforce org configured as an identity provider.
Required Editions
| Available in: Lightning Experience and Salesforce Classic |
| Available in: Enterprise, Performance, Unlimited, and Developer Editions |
When you set up Mimeo as a service provider and create a connected app in Salesforce, users can access Mimeo using their Salesforce login credentials. Mimeo supports the SAML protocol for identity provider–initiated SSO. However, configuring Mimeo for SSO using the SAML protocol is not a self-service process. Contact your Mimeo representative for the information you need to enable SAML for your account.
To configure SSO for Salesforce to Mimeo, follow these high-level steps.
Set Up Your Salesforce Org as an Identity Provider
With the My Domain feature, your Salesforce org is enabled as an identity provider. My Domain is required for all orgs. If you don’t like your org’s My Domain name, you can change it.
The My Domain feature also creates a certificate and key pair. The certificate establishes trust between your Salesforce org and ADP. Optionally, you can use another self-signed certificate or import a CA-signed certificate.
To download the Salesforce self-signed certificate:
- From Setup, enter Identity Provider in the Quick Find box, and select Identity Provider.
- Click Download Certificate.
Contact Mimeo for the SAML Settings
Contact your Mimeo representative to enable SAML for your account. To set up a Salesforce connected app for Mimeo, you also need these SAML settings:
- Assertion consumer service (ACS) URL
- companyId
- organizationId
- redirectUrl
- authorizedMarketPlaceUrl
Create a Connected App in Salesforce
- In Salesforce, create a connected app.
- In Lightning Experience, from Setup, enter App in the Quick Find box, and select App Manager. Click New Connected App.
- In Salesforce Classic, from Setup, enter Apps in the Quick Find box, and select Apps. Under Connected Apps, click New.
- Configure the connected app Basic Information settings.
- Enter a name for the Mimeo connected app. Salesforce uses this name to populate the API name.
- Enter your email address in case Salesforce needs to contact you or your support team.
- Optionally, upload or specify a logo and icon to represent your Mimeo application in the Salesforce App Launcher.

- Configure the connected app Web App Settings.
- Select Enable SAML.
- For Entity Id, enter the SAML Audience URL, for example, Mimeo-Salepublications.
- For ACS URL, enter the URL provided by your Mimeo representative. For example, https://my.sandbox.mimeo.com/sso/authenticate.ashx.
- For Subject Type, select the method attribute by which a username in Mimeo maps to a unique Salesforce user identity. For example, Federation ID.
- For Name ID Format, keep the default.
- For Issuer, keep the default value, which is your My Domain login URL.
- For IdP Certificate, keep the default (Default IdP Certificate).

- Save the settings.
- Mimeo requires that you configure custom attributes for the Salesforce identity
provider.
- From Setup, enter Apps in the Quick Find box.
- If you’re using Lightning Experience, select Manage Connected Apps.
- If you’re using Salesforce Classic, under Manage Apps, select Connected Apps.
- Click the name of your connected app for Mimeo. The connected app detail page appears.
- From Setup, enter Apps in the Quick Find box.
- Under Custom Attributes, click New.
- Enter an attribute key and an attribute value. For example, enter firstName for the attribute key.
- Click Insert Field, and select the attribute value, for example, $User.FirstName. Click Insert and Close.
- Save the attribute definition.

- Repeat this process, adding these attribute keys and attribute values. To enter a
text string for a value, use single quotes.
- firstName, $User.FirstName
- lastName, $User.LastName
- IDPemail, $User.Email
- companyName (enter your Mimeo domain name)
- companyId (enter the value provided by the Mimeo team)
- organizationId (enter the value provided by the Mimeo team)
- redirectUrl (enter the value provided by the Mimeo team)
- authorizedMarketPlaceUrl (enter the value provided by the Mimeo team)
- Configure profiles and permission sets for the connected app. From the connected app detail page, click Manage Profiles or Manage Permission Sets, and add profiles or permission sets for the users who can access this app.
- Enter the Start URL for the connected app.
- On the connected app detail page, under SAML Login Information, copy the IdP-initiated login URL.
- On the connected app detail page, click Edit Policies.
- For Start URL, paste the IdP-initiated login URL, for example, https://MyDomainName.my.salesforce.com/idp/login?app=0spR000000000Dg.
- Save the settings.
Test the SSO Configuration
In Salesforce, from the App Launcher, find and open the Mimeo app. If you configured the Mimeo logo and icon for the connected app, the App Launcher displays them. If SSO is configured properly, Salesforce creates an application session.

