mijnCaress SAML application setup
Introduction
This article demonstrates how to set up HelloID and mijnCaress for single sign-on using the SAML protocol. The configuration takes place in HelloID and requires you to send information to PinkRoccade Care.
Requirements
HelloID environment
mijnCaress environment
Create or import a certificate
If there is no certificate yet, you must create or import one. For this tutorial, we will create a self-signed certificate. Name it mijnCaressSelfSigned
.
Application setup
Add the mijnCaress application
Add a new application.
Find the template for mijnCaress (SAML).
Select its Add button.
General tab
Change the following settings:
Default Login URL
Replace with your mijnCaress SAML Entry Point URL, in the format
https://{customer}.mijncaress.nl/mijncaress/SAMLEntryPoint
.
Select the Next button.
Single Sign-On tab
Change the following settings:
Name ID format
unspecified
Issuer
Your HelloID domain in the format
https://{customer}.helloid.com
.Endpoint/ACS URL
Your mijnCaress endpoint URL, e.g.,
https://{customer}.mijncaress.nl/mijncaress/saml/SAMLAssertionConsumer
SP-initiated URL
Your mijnCaress SAML Entry Point URL, e.g.,
https://{customer}.mijncaress.nl/mijncaress/SAMLEntryPoint
X509 Certificate
mijnCaressSelfSigned
Overwrite Audience
On
Extra Audience
Your mijnCaress URL, e.g.
https://{customer}.mijncaress.nl
Select the Next button.
Self Service tab
Optionally, generate a Self Service product, which makes the application requestable. Select a group which will have access to the product.
Select the Next button.
Finish tab
Select the Save button to add the SmartDocuments application to HelloID.
Supplier-side configuration
The HelloID side of the configuration is now finished.
To connect, PinkRoccade Care needs to add the connection on their side. Contact PinkRoccade Care to request this.
Send them the following information:
Metadata URL
Metadata URL
Go to the Applications overview.
Select the Edit link for the newly-added mijnCaress application.
Right-click the Download metadata button
Select Copy link address. It will resemble:
https://enyoi.helloid.com/metadata/download?ApplicationGUID=e6e741f5-a469-4849-93f7-fe2e259a339f
.
Finish up
The mijnCaress application has been added to HelloID, and a trust has been configured between mijnCaress and HelloID. You are now free to test the application and assign it to users within your organization. See Applications - Overview and its related articles for more information.