You are here:
Create an SSO Application in Ping
To use Ping as your identity provider while using single sign-on, configure the correct settings for your app integration.
- Open the Ping application.
- Go to Applications and select Applications from the sidebar.
- Click the + sign next to Applications.
- In the Add Application screen, enter the Application Name and Description.
- Under Application Type, select SAML Application.
- Click Configure.
- Under SAML Configuration, select Manually Enter.
- In the ACS URLs field, enter any URL (it will be replaced with the correct parameter later on).
- Enter any value in the Entity ID field.
- Click Save.
- Navigate to the newly created application's Configuration tab.
- Click Download Signing Certificate. Download the certificate as a .pem file.
- Sometimes the file will save as a .crt. Manually replace the extension with .pem.
- In the Own Data Platform, paste the Issuer ID into the Identity Provider Issuer field, upload the certificate.
- (Optional) To enable SP-Initiated sign in, enable the SP-Initiated checkbox, copy the Initiate Single Sign-On (SSO) URL value from Ping and paste it into the IdP SSO URL field.
- Click Next. It may take a few minutes to verify your settings.
- Once your settings are verified, the IdP Parameters will be displayed.
- In Ping, open the app you created and open the Configuration tab. Click the Edit icon and scroll down to SAML Settings.
-
Enter the IdP Parameters from the Own Data Platform in the corresponding fields:
Parameter in Own Parameter in Ping Audience URI (SP Entity ID) Entity ID Single Sign-On URL ACS URLs Default RelayState Application URL (This field only appears when the SSO application is in edit mode.) - Select emailAddress as the Subject NameID format.
- Click Save.

