This example shows you how to configure an Identity Provider (IdP) for SAML 2.0 SSO, using Active Directory Federation Services. Once these steps have been completed, you can use the IdP with the procedures described in the article Configuring SAML 2.0 Web SSO for the Service Portal in Commander 6.
Prerequisites for this example
- Commander must be installed with a valid certificate. This example uses an internal certificate authority (CA). See the Knowledge Base article Generating and Installing an SSL Certificate with Active Directory Certificate Services for more information.
- You must have a verified operational Active Directory Federation Services (ADFS) server. See the Microsoft article Verify That a Federation Server Is Operational for more information.
- You need a Service Portal user account to test the configuration. This user must be a member of the domain for which the ADFS server has been configured.
- You must configure Commander for single sign-on and generate Commander metadata as shown in the procedure above.
Configuring the ADFS server for single sign-on
- On the ADFS Server, launch the ADFS Management Console.
- Right-click the tree and select Add Relying Party Trust.
- On the Select Data Source page of the Add Relying Party Trust Wizard, select Import data about the relying party from a file.
- Click Browse and navigate to the Commander-sp-metadata.xml file you generated in the previous procedure.
- On the Specify Display Name page, give the trust configuration an identifying name, such as Commander Service Portal SSO.
- On the Choose Issuance Authorization Rules page, select Permit all users to access this relying party. In a production environment, we do not recommend allowing access to all users.
- On the Ready to Add Trust page, review your settings.
- On the Finish page, select Open the Edit Claims Rules Dialogue for this relying party trust when the wizard closes, and click Close.
- In the Edit Claim Rules window, go to the Issuance Transform Rules tab and click Add Rule.
- In the Add Transform Claim Rule wizard, select Send LDAP Attributes as Claims from the Claim rule template drop-down list.
- Configure the rule to map User-Principal-Name to mail. The mapped attribute must match the Credential Attribute configured above.
- Click Finish.
- Add another rule to transform an incoming claim and give the rule a name.
- Configure the rule to map the Windows account name to the Windows-formatted Name ID.
- Verify your settings and click Finish.
Testing the configuration
- Browse to https://<Commander host>:<port>/portal. You are redirected to a sign-in page on the ADFS server.
- In the same browser session, log in as a preconfigured Service Portal user. You are able to access the Service Portal without having to log in again.
Was this helpful?
Related Articles
403 error when using SAML authentication through ADFS 8Number of Views Setup an Identity Provider for Flexera One 20Number of Views Automatic reauthentication with the Identity Provider (IDP) does not occur if the web UI makes an AJAX call after a SAML s… 4Number of Views Known Issue: Automatic reauthentication with the Identity Provider (IDP) does not occur if the web UI makes an AJAX call a… 12Number of Views [FNMS SAML Setup] Okta configuration guide to enable SSO / SAML in FlexNet Manager Suite 8Number of Views
Revenera Assistant
Online
Hi, I am Reva - Ask me anything.
Updates
No new updates
Chat
Home
Updates
/**/
Thanks for the feedback!
Your feedback has been saved.Rate this response:
1
2
3
4
5
Add Additional feedback ( Optional )
0/240
English
English
Language changed successfully
Something went wrong
Email sent successfully
Something went wrong
Case create successfully
Are you sure you want to cancel
the case creation?
Please select a product to submit the case.
Please select a product version to submit the case.
0/255
Upload Attachment
File Upload
Maximum file
size allowed is 3 MB.
File type
not supported.
Supported file types:
Documents (.txt, .doc, .docx, .pdf), Images (.jpg, .png), Comma Separated Files
(.csv) Speadsheets (.xlsx, .xls)
Are you sure you want to cancel the case creation?
Case closed successfully
File Upload
Maximum file size allowed is 3 MB.
File type not supported.
Supported file types:
Documents (.txt, .doc, .docx, .pdf), Images (.jpg, .png), Comma Separated Files
(.csv) Speadsheets (.xlsx, .xls)
Are you sure you want to close this case
| Products | Region | Phone Numbers |
|---|---|---|
| FlexNet Operations FlexNet Embedded FlexNet Publisher FlexNet Connect FlexNet Code Insight InstallAnywhere InstallShield |
North America * |
+1 630-332-2513 (toll) +1 877-279-2853 (toll-free in North America) |
| Europe * |
+44 1925 944367 (toll) +44 800 047 8642 (toll-free in Europe) |
|
| Japan * | +81 3-4540-5335 (select option 2) | |
| Australia * |
+61 3 9895 2177 +61 1800 560 603 (toll-free in Australia) |
|
|
Usage Intelligence (formerly
Revulytics) Compliance Intelligence |
Please use the Case Portal to submit your support ticket or reach out to your Revenera contact. | |
File Upload
Maximum file
size allowed is 3 MB.
File type
not supported.
Supported file types:
Documents (.txt, .doc, .docx, .pdf), Images (.jpg, .png), Comma Separated Files
(.csv) Speadsheets (.xlsx, .xls)
© 2026 Flexera Software. All Rights Reserved.
Case id: 00001065
Activity: Status change: 2 hours ago