Fluig Identity is a third-party authentication service that enables your users to be automatically logged in to GoodData seamlessly. When Fluig Identity is implemented in your GoodData domain, users of your projects can access GoodData without using GoodData-specific credentials.
For more information on Fluig Identity, visit the Fluig website. For more general information on GoodData and SSO, see Single Sign-On Overview.
GoodData uses the SAML protocol for exchanging information with Fluig Identity.
This article provides instructions for configuring Fluig Identity authentication for your GoodData domain.
Configure Fluig Identity
Before you start, obtain the ID of your project in GoodData. If you do not know your project ID, see Find the Project ID.
- Log in to your Fluig Identity account as an administrator.
- Add a new application to your account. When prompted, select GoodData.
If you need help with navigating through the Fluig Identity user interface, see the Fluig Identity user documentation.
From the newly added GoodData application, download Identity Provider metadata (IDP metadata).
IDP metadata is specific for your company.
- Send the downloaded IDP metadata to the GoodData Support team.
When the GoodData Support team completes the configuration, you can start assigning users to the GoodData app from Fluig Identity.
You provision users directly in Fluig Identity and assign them to the GoodData application.
When you assign a user to the GoodData application in Fluig Identity, this user is automatically provisioned to the GoodData project configured in the application.
If you want to create users in GoodData directly, use the GoodData API for creating users. For each user, specify their SSO provider (the
ssoProvider keyword in the API call request). The GoodData Support team have provided you with the SSO provider identifier during the configuration process.