Skip to main content
À partir du 30 octobre 2026, la Trailblazer Community en ligne sera disponible uniquement en lecture seule. Les nouvelles conversations de communauté seront déplacées sur Slack. Consulter notre FAQ

Les superbadges vous permettent d'appliquer les compétences que vous avez acquises à des problèmes professionnels complexes et concrets. Ces évaluations exigent un niveau plus élevé de compétences et de connaissances. Il ne s'agit pas de défis à relever étape par étape et leur réalisation nécessite souvent plus de temps.

Configure and Test SAML SSO Settings

Next, configure inbound SSO. In this step, you’ll use the Axiom Heroku web app as the identity provider (IdP). Axiom has provided you with the following Security Assertion Markup Language (SAML) settings for the Salesforce configuration.

Field

Value

Name

Axiom SSO Test

API Name

Axiom_SSO_Test

Issuer

https://axiomsso.herokuapp.com

Identity Provider Certificate

Download the Identity Provider Certificate from Axiom, then upload in this field.

Request Signature Method

RSA-SHA1

SAML Identity Type

Federation ID

Identity Provider Login URL

https://axiomsso.herokuapp.com/RequestSamlResponse.action

Entity ID

<The org’s My Domain URL>

Note

Note

If a setting is not listed here, leave the default setting as is.

Now that you have SSO enabled and set up in the Salesforce org, test your configuration by generating a SAML response from the Axiom Heroku web app. Make sure the Murphy Jean user's email address is verified and set as yours to receive the verification code. A successful test allows you to log in to the org via SSO as the Murphy Jean user.

  • The Axiom SAML version must match the version in your SAML SSO Settings.
  • Set the Recipient URL to the Login URL endpoint.

Finally, make sure that users are unable to bypass the SSO requirement by preventing direct login from login.salesforce.com. And, since you always have user experience in mind, add a button to the org’s My Domain login page that takes users directly to the Axiom SSO Test authentication service.

Note

Note

We won’t check for the SSO button, but adding it is a best practice.

Important

Don’t lock yourself out of your org for this superbadge!

  1. Make note of the org’s My Domain URL. You may need it for future access.
  2. Do not uncheck the Login Form authentication service.

As a seasoned Salesforce consultant, you’re well aware that MFA is required for all users. Cumulus Global Bank has decided that the MFA requirement will be completed through the SSO IdP, so it doesn’t need to be configured within Salesforce for SSO users.

Resources

Partagez vos commentaires sur Trailhead dans l'aide Salesforce.

Nous aimerions connaître votre expérience avec Trailhead. Vous pouvez désormais accéder au nouveau formulaire de commentaires à tout moment depuis le site d'aide Salesforce.

En savoir plus Continuer à partager vos commentaires