diff --git a/doc/UCS-SAML-SSO.md b/doc/UCS-SAML-SSO.md index 8a78df8619..b523d89a78 100644 --- a/doc/UCS-SAML-SSO.md +++ b/doc/UCS-SAML-SSO.md @@ -20,79 +20,58 @@ Label to display as option on login page:
or leave empty and select SAML as authentication type above for single sign on - + Test SSO Identity Provider:
You can specify multiple IdP on separate lines. - + https://ucs.example.org/simplesamlphp/saml2/idp/metadata.php - Metadata: - refresh - + Metadata:
+ refresh [ just now v] -
+ https://ucs.example.org/simplesamlphp/saml2/idp/metadata.php Certificate Metadata is signed with: (Will be downloaded once, unless changed.) - + + https://ucs.example.org/simplesamlphp/saml2/idp/certificate + Result data to use as username: - - + [ uid v] Result data to add or remove extra membership: - - + [ eduPersonAffiliation v] Result values (comma-separated) and group-name to add or remove: - - + Staff
+ Teachers Allow SAML logins to join existing accounts:
(Requires SAML optional on login page and user to specify username and password) - + [ No v] Match SAML usernames to existing ones (use strings or regular expression): - - + @@ -101,13 +80,13 @@ Name for Service Provider: - + EGroupware Technical contact: - - + Ralf Becker
+ rb@egroupware.org @@ -178,4 +157,4 @@ Password: secretpassword > Currently, there are two bugs, you need to work around: > 1. EGroupware checks the above user/password as an IMAP user, so you need to additionally create him as UCS user with mail, in order to be able to store the dialog. > 2. The account you use for testing, must NOT have any additional personal mail accounts, as you get an error in that case, when you open the mail app. -* log out and in again with SSO and check everything works \ No newline at end of file +* log out and in again with SSO and check everything works