EBS: Updating the Account-Level Metadata File for Single Sign-On (SSO) in the Everbridge Manager Portal

Topic

How to upload a new metadata file into the Single Sign-On (SSO) settings at the Account level in the Everbridge Manager Portal.

Description

After acquiring a new certificate or the IdP system settings have changed, follow the steps listed below.

Prepare Your Organization

Before making changes, communicate to users that the SSO is scheduled for reconfiguration.

If users do not already have break-glass accounts, see Knowledge Base Article 000059297 - SSO Break Glass Access. Using break-glass accounts ensures that a Notification can be sent without issues during the reconfiguration.

Backup The Existing Configuration

  1. Log in to the Manager Portal as an Account Administrator.
  2. Select Settings from the top menu bar.
  3. Select Security from the menu on the left.
  4. Select Single Sign-On for Manager Portal from the sub-menu.
  5. Screenshot or copy/paste the existing configuration information into Notepad.
  6. Click Download at the bottom of the page to download the existing metadata file.

Updating Only the Identity Provider Metadata File

  1. Log in to the Manager Portal as an Account Administrator.
  2. Select Settings from the top menu bar.
  3. Select Security from the menu on the left.
  4. Select Single Sign-On for Manager Portal from the sub-menu.
  5. Select the Edit Pencil to the right of the name of the current Metadata File.
  6. From your files, choose the name of the new metadata file.
  7. Select Open.
  8. Click Save.
  9. Procced to Testing the SSO configuration.

Reconfigure Manager Portal SSO Settings

  1. Log in to the Manager Portal as an Account Administrator.
  2. Select Settings from the top menu bar.
  3. Select Security from the menu on the left.
  4. Select Single Sign-On for Manager Portal from the sub-menu.
  5. Click the white Remove button to clear the existing configuration. 
  6. Using the backup you created, re-enter the Name for your SSO instance.
  7. Using the backup you created, re-enter your API Name. The API name must exactly match what you chose for the Entity ID and Reply URLs.  
  8. Upload the Identity Provider Metadata file by clicking Choose File.
  9. Select the appropriate radio button for the Security Hash Algorithm.
  10. Click Save.
Reconfiguration Example

Test the New SSO Configuration

Request a few users to attempt logging in via SSO. If the users are unable to log in:

  1. Capture screenshots and specific error messages.
  2. Restore the prior configuration by uploading the metadata and re-entering the settings captured during the 'Backup Existing Configuration' step.
  3. Reach out to the IdP administrator to determine whether there is an error happening on the IdP side.
  4. Contact Everbridge Support noting the specific error received, the impacted user, the username entered upon log in, and the date/time of the failed sign-in attempt.

Download XML for Record Keeping

If the reconfiguration was successful, download the XML file used to create this new SSO configuration for record keeping and follow the steps below:

  1. Log in to the Manager Portal as an Account Administrator.
  2. Select Settings from the top menu bar.
  3. Select Security from the menu on the left.
  4. Select Single Sign-On for Manager Portal from the sub-menu.
  5. Click the Download button at the bottom of the configuration page.

Related Articles

EBS: Single Sign-on (SSO) ​​​​​​​Unauthorized Access Error When Logging in to the Everbridge Manager or Member Portals

EBS: Troubleshooting & Configuration Guide for Single Sign-On (SSO) - Main Page - INTERNAL ONLY

EBS: Troubleshooting Single Sign-On (SSO) in Everbridge Suite

Was this article helpful?
0 out of 0 found this helpful

Article Feedback

Please sign in to leave a comment.