SSO and ADFS

Ivo_Hanbeukers
Level 2

Re: SSO and ADFS

Done, I added the steps

Good luck

Ivo_Hanbeukers
Level 2

Re: SSO and ADFS

Hi, I will describe the steps which I did.

If you still have problems you can contact me directly: ivo.hanbeukers@rockwool.com

In Marketo go to the SSO Settings

Enable SAML Sngle Sign-On

Issuer ID and Entity ID are the same in my configuration: http://sts.youradfsserver.com/adfs/services/trust

User ID Location: In Name identifier element of Subject

Name Id Format: urn:oasis:names:tc:SAML:1.1:nameid-format:email

Identity Provider Certificate.: Upload here your certificate from your ADFS server.

Go now to your AFS Server and create a new Relying Party Trust

Enter the data about the relying party manually

Give it a name

Select all the
default settings except for:

Configure URL

Select Enable support for the SAML 2.0 Web SSO protocol

Enter the url:  https://login.marketo.com/saml/assertion/Munchkin Account ID

you can find your Munchkin Account ID in Marketo un intergration -> Munchkin

On the next screen you have to enter the relying party trust identifier: http://saml.marketo.com/sp

On the claim rules window add a rule

Use the claim rule template: Send LDAP Attribute as Claims

Give it a name

Attribute store: Active directory

LDAP Attribute = E-mail-address (This can be different for you depending on the login name you use in Marketo)

Outgoing Claim Type must be: Name ID

Good luck

Ivo Hanbeukers

Legrandcharles_
Level 1

Re: SSO and ADFS

Hi 

 

      We try the same steps that you have mention above, but when we try to access the SAML Assertion URL mention below, getting an error as 

"Error processing SAML message. Request was ill-formed in some way."

https://login.marketo.com/saml/assertion/Munchkin Account ID

 

Could you plz help us to resolve this. and let us know the cause for this issue