Topic
How to upload a new metadata file into the Single Sign-On (SSO) settings at the Account level in the Everbridge Manager Portal.
Description
After acquiring a new certificate or the IdP system settings have changed, follow the steps listed below.
Prepare Your Organization
Before making changes, communicate to users that the SSO is scheduled for reconfiguration.
If users do not already have break-glass accounts, see knowledge article EBS: Single Sign-On (SSO) Break Glass Access in Everbridge Suite. Using break-glass accounts ensures that a Notification can be sent without issues during the reconfiguration.
Backup The Existing Configuration
- Log in to the Manager Portal as an Account Administrator.
- Select Settings from the top menu bar.
- Select Security from the menu on the left.
- Select Single Sign-On for Manager Portal from the sub-menu.
- Screenshot or copy/paste the existing configuration information into Notepad.
- Click Download at the bottom of the page to download the existing metadata file.
Updating Only the Identity Provider Metadata File
- Log in to the Manager Portal as an Account Administrator.
- Select Settings from the top menu bar.
- Select Security from the menu on the left.
- Select Single Sign-On for Manager Portal from the sub-menu.
- Select the Edit Pencil to the right of the name of the current Metadata File.
- From your files, choose the name of the new metadata file.
- Select Open.
- Click Save.
- Procced to Testing the SSO configuration.
Reconfigure Manager Portal SSO Settings
- Log in to the Manager Portal as an Account Administrator.
- Select Settings from the top menu bar.
- Select Security from the menu on the left.
- Select Single Sign-On for Manager Portal from the sub-menu.
- Click the white Remove button to clear the existing configuration.
- Using the backup you created, re-enter the Name for your SSO instance.
- Using the backup you created, re-enter your API Name. The API name must exactly match what you chose for the Entity ID and Reply URLs.
- Upload the Identity Provider Metadata file by clicking Choose File.
- Select the appropriate radio button for the Security Hash Algorithm.
- Click Save.
Test the New SSO Configuration
Request a few users to attempt logging in via SSO. If the users are unable to log in:
- Capture screenshots and specific error messages.
- Restore the prior configuration by uploading the metadata and re-entering the settings captured during the 'Backup Existing Configuration' step.
- Reach out to the IdP administrator to determine whether there is an error happening on the IdP side.
- Contact Everbridge Support noting the specific error received, the impacted user, the username entered upon log in, and the date/time of the failed sign-in attempt.
Download XML for Record Keeping
If the reconfiguration was successful, download the XML file used to create this new SSO configuration for record keeping and follow the steps below:
- Log in to the Manager Portal as an Account Administrator.
- Select Settings from the top menu bar.
- Select Security from the menu on the left.
- Select Single Sign-On for Manager Portal from the sub-menu.
- Click the Download button at the bottom of the configuration page.
Related Articles
EBS: Troubleshooting & Configuration Guide for Single Sign-On (SSO) - Main Page - INTERNAL ONLY
EBS: Troubleshooting Single Sign-On (SSO) in Everbridge Suite
Article Feedback
While we can’t respond to you directly, we’d love to know how we can improve the article.
Please sign in to leave a comment.