SAML Single Sign-on Setup Steps in NetSuite
SAML Single Sign-on setup in NetSuite includes enabling features, assigning permissions, and configuring user roles.
To get started with SAML Single Sign-on (SSO), some preliminary setup steps must be completed in your NetSuite account. This process is vital for ensuring secure access management through SAML integration with identity providers (IdPs).
How to Enable the SAML Single Sign-on Feature
To enable the SAML Single Sign-on feature, follow these steps:
- Navigate to Setup > Company > Setup Tasks > Enable Features and click the SuiteCloud subtab.
- In the Manage Authentication section, check the SAML Single Sign-on box. Agree to the SuiteCloud Terms of Service when prompted.
- Click Save.
Warning: By enabling the SAML Single Sign-on feature, users can access your NetSuite account through third-party services, which may have different authentication and security protocols. It’s crucial that your implementation complies with any relevant security standards, including PCI Data Security Standards.
How to Add SAML SSO Permissions to Roles
You can customize roles in NetSuite to include permissions for SAML SSO. This enables existing roles to facilitate SSO for users who require it. Here’s how:
- Go to Setup > Users/Roles > User Management > Manage Roles.
- Select the role to customize and click Customize.
- Renaming the role to reflect SAML usage is recommended for clarity.
- Click the Permissions subtab and select the respective SAML permission from the Setup subtab.
- Click Add to assign the necessary SAML permissions to the role.
- Click Save after adding the required permissions.
Important Notes on SAML Permissions
- If a role is set to require two-factor authentication (2FA) and SAML SSO is added, the 2FA requirement will be bypassed, as SAML permissions take precedence.
- Review the SAML SSO Permissions documentation for detailed information on the specific permissions applicable in this context.
By following these steps, administrators can effectively prepare their NetSuite account and roles for secure SAML Single Sign-on access, ensuring users can authenticate seamlessly through their chosen identity providers.
Key Takeaways
- Enabling SAML Single Sign-on allows third-party access through an identity provider.
- Roles must be customized to include SAML SSO permissions for users.
- Compliance with security standards is crucial when implementing SSO.
Frequently Asked Questions (4)
How do I enable SAML Single Sign-on in NetSuite?
Do I need to modify NetSuite roles to use SAML SSO?
What happens to two-factor authentication when SAML SSO is enabled for a role?
Are there security concerns when enabling SAML Single Sign-on in NetSuite?
Was this article helpful?
More in Security
- Enable Token-Based Authentication in NetSuite Developer Tools
Token-based authentication is now required for all NetSuite developer tools, enhancing security compliance and aligning with Two-Factor Authentication...
- Security, Privacy, and Compliance Updates in SuiteCloud
Explore the latest updates on security, privacy, and compliance practices in SuiteCloud to enhance developer safety.
- Login Audit Trail Features for User Activity Tracking
The Login Audit Trail allows tracking user login/logout activity in NetSuite, filtering by date, user, and IP address.
- Allow Site to Be Framed Configuration in NetSuite
Configure the Allow Site to Be Framed setting in NetSuite to manage iframe embedding and enhance security for your web store.
Advertising
Reach Security Professionals
Put your product in front of NetSuite experts who work with Security every day.
Sponsor This Category