Set up SAML SSO with Centrify
Centrify's admin portal uses the same Web Apps flow as CyberArk Identity and Delinea, so this will look familiar if you've set up either of those. This assumes SSO is already on, from SAML setup.
- Where to find it
- Organization → Integrations → SSO
- Who can use it
- Organization Admin in DMARCS; an admin on your Centrify Identity Service tenant
- Time needed
- 10 minutes
- You will need
- Admin access to your Centrify Identity Service admin portal
Add the custom SAML application
- Add the app
In the Centrify admin portal, go to Apps → Add Web Apps, open the Custom tab, and add next to SAML. Name it DMARCS.
- Choose manual configuration
Open Settings → Trust and choose Manual Configuration.
Point it at DMARCS
- SP Entity ID
https://your-domain.com/api/saml/metadata- Assertion Consumer Service (ACS) URL
https://your-domain.com/api/api.php?action=saml_acs
Map the email attribute
In the attribute settings, make sure the outgoing assertion carries the user's email; that's what DMARCS matches against.
Give DMARCS Centrify's details, then test
- Get the metadata into DMARCS
Still on the Trust tab, download or copy Centrify's IdP metadata, and upload it on DMARCS's SSO page with Upload Metadata.
- Assign access
Under User Access, assign the roles who should get SSO.
- Enable and test
Switch on Enable SSO on DMARCS's SSO page and save, then sign in from a private browser window.
Still need a hand?
Email support@dmarcs.com, call +971 4 240 4441, or open a ticket from Support inside the app.