SAML Single Sign-on Setup Steps in NetSuite
SAML Single Sign-on setup in NetSuite includes enabling features, assigning permissions, and configuring user roles.
To get started with SAML Single Sign-on (SSO), some preliminary setup steps must be completed in your NetSuite account. This process is vital for ensuring secure access management through SAML integration with identity providers (IdPs).
How to Enable the SAML Single Sign-on Feature
To enable the SAML Single Sign-on feature, follow these steps:
- Navigate to Setup > Company > Setup Tasks > Enable Features and click the SuiteCloud subtab.
- In the Manage Authentication section, check the SAML Single Sign-on box. Agree to the SuiteCloud Terms of Service when prompted.
- Click Save.
Warning: By enabling the SAML Single Sign-on feature, users can access your NetSuite account through third-party services, which may have different authentication and security protocols. It’s crucial that your implementation complies with any relevant security standards, including PCI Data Security Standards.
How to Add SAML SSO Permissions to Roles
You can customize roles in NetSuite to include permissions for SAML SSO. This enables existing roles to facilitate SSO for users who require it. Here’s how:
- Go to Setup > Users/Roles > User Management > Manage Roles.
- Select the role to customize and click Customize.
- Renaming the role to reflect SAML usage is recommended for clarity.
- Click the Permissions subtab and select the respective SAML permission from the Setup subtab.
- Click Add to assign the necessary SAML permissions to the role.
- Click Save after adding the required permissions.
Important Notes on SAML Permissions
- If a role is set to require two-factor authentication (2FA) and SAML SSO is added, the 2FA requirement will be bypassed, as SAML permissions take precedence.
- Review the SAML SSO Permissions documentation for detailed information on the specific permissions applicable in this context.
By following these steps, administrators can effectively prepare their NetSuite account and roles for secure SAML Single Sign-on access, ensuring users can authenticate seamlessly through their chosen identity providers.
Source: This article is based on Oracle's official NetSuite documentation.
Key Takeaways
- Enabling SAML Single Sign-on allows third-party access through an identity provider.
- Roles must be customized to include SAML SSO permissions for users.
- Compliance with security standards is crucial when implementing SSO.
Frequently Asked Questions (4)
How do I enable SAML Single Sign-on in NetSuite?
Do I need to modify NetSuite roles to use SAML SSO?
What happens to two-factor authentication when SAML SSO is enabled for a role?
Are there security concerns when enabling SAML Single Sign-on in NetSuite?
Was this article helpful?
More in Security
- Security, Privacy, and Compliance Updates in SuiteCloud
Explore the latest updates on security, privacy, and compliance practices in SuiteCloud to enhance developer safety.
- Enable Token-Based Authentication for SuiteCommerce
Token-based authentication is now mandatory in SuiteCommerce solutions to enhance security and comply with Two-Factor Authentication policies.
- CDN IP Address Ranges and Access Management in NetSuite
Understand CDN IP address ranges and best practices for managing access to NetSuite services without relying on specific IP addresses.
- Configuring SFTP Credentials for Integration in NetSuite
Configure SFTP credentials in NetSuite using public key or user credentials for seamless integration.
Advertising
Reach Security Professionals
Put your product in front of NetSuite experts who work with Security every day.
Sponsor This Category