Skip to main content

SAML for the Admin Interface

SAML for the admin interface is the same as SAML for the user base with a few very small alterations. Follow the existing guides for EntraID, OKTA or JumpCloud while keeping the below in mind.

  1. If the same IdP is in use for users and admins, a second Application MUST be created for admin users.
  2. If the same IdP is in use for users and admins, a unique set of SAML certificates must be generated for admin instance. 
  3. In the SAML guides under Knocknoc SAML Config, adjust;
    1. SAMLMetaDataFile to AdminSAMLMetaDataFile
    2. SAMLCertFile to AdminSAMLCertFile
    3. SAMLKeyFile to AdminSAMLKeyFile
    4. SAMLMetadataUrl to AdminSAMLMetadataUrl
  4. Only a single group is required within the IdP for Knocknoc-Admin users, assign this group to the SAML Application. All users within this group will be able to authenticate and administer Knocknoc.