Come fa Squali a configurare il Single Sign-On per le nostre applicazioni interne?
SqualiOnline configures SSO for internal applications by acting as a SAML identity provider that exchanges signed authentication assertions with the service provider. First, you download the SqualiOnline metadata XML from the admin console and upload it to your application’s SAML settings. Then you map LDAP attributes such as uid, mail, and groups to the SAML attributes required by the app. SqualiOnline supports SHA‑256 signatures and can handle up to 10 000 concurrent authentications per hour. After saving the configuration, you enable just‑in‑time provisioning so new users are created on first login. Finally, you validate the flow with the built‑in SAML tracer to ensure signatures verify correctly.