This article describes how to configure an Identity Provider (IdP) for SAML 2.0 Single Sign-On (SSO) using Active Directory Federation Services (ADFS). Once complete, the IdP can be used with the procedures outlined in the related documentation for configuring SAML 2.0 Web SSO in Commander.
Prerequisites
- Commander must be installed with a valid certificate. This example uses an internal certificate authority (CA). See the Knowledge Base article Generating and Installing an SSL Certificate with Active Directory Certificate Services for more information.
- You must have a verified operational Active Directory Federation Services (ADFS) server. Refer to Microsoft documentation to verify that a Federation Server is operational.
- A Service Portal user account is needed to test the configuration. This user must belong to the domain that the ADFS server is configured for.
- Commander must be configured for single sign-on, and Commander metadata must be generated as described in the related procedure.
Configuring the ADFS server for single sign-on
- On the ADFS server, launch the ADFS Management Console.
- Right-click the tree and select Add Relying Party Trust.
- On the Select Data Source page of the Add Relying Party Trust Wizard, select Import data about the relying party from a file.
- Click Browse and navigate to the Commander-sp-metadata.xml file generated in the previous procedure.
- On the Specify Display Name page, give the trust configuration an identifying name, such as Commander Service Portal SSO.
- On the Choose Issuance Authorization Rules page, select Permit all users to access this relying party. In a production environment, limiting access is recommended.
- On the Ready to Add Trust page, review the settings.
- On the Finish page, select Open the Edit Claims Rules Dialogue for this relying party trust when the wizard closes, and click Close.
- In the Edit Claim Rules window, go to the Issuance Transform Rules tab and click Add Rule.
- In the Add Transform Claim Rule wizard, select Send LDAP Attributes as Claims from the Claim rule template drop-down list.
- Configure the rule to map User-Principal-Name to mail. The mapped attribute must match the Credential Attribute configured earlier.
- Click Finish.
- Add another rule to transform an incoming claim and give the rule a descriptive name.
- Configure the rule to map the Windows account name to the Windows-formatted Name ID.
- Verify your settings and click Finish.
Testing the configuration
- Browse to
https://<Commander host>:<port>/portal. You should be redirected to a sign-in page on the ADFS server. - In the same browser session, log in as a preconfigured Service Portal user. You should gain access to the Service Portal without logging in again.
Outcome
Once complete, Commander is integrated with Active Directory Federation Services as an IdP for SAML 2.0 SSO, enabling secure and seamless authentication for users.
Was this helpful?
Related Articles
Setup an Identity Provider for Flexera One 26Number of Views Okta “400 Login Failed” error during single sign-on (SSO) 56Number of Views SCIM SSO (System for Cross-Domain Identity Management Single Sign-On) 7Number of Views Configure Azure Active Directory for SSO with Snow Commander 39Number of Views Digital Certificates for FlexNet Operations Cloud configured with Single Sign-On (SSO)/SAML 32Number of Views
Revenera Assistant
Online
Hi, I am Reva - Ask me anything.
Updates
No new updates
Chat
Home
Updates
/**/
Thanks for the feedback!
Your feedback has been saved.Rate this response:
1
2
3
4
5
Add Additional feedback ( Optional )
0/240
English
English
Language changed successfully
Something went wrong
Email sent successfully
Something went wrong
Case create successfully
Are you sure you want to cancel
the case creation?
Please select a product to submit the case.
Please select a product version to submit the case.
0/255
Upload Attachment
File Upload
Maximum file
size allowed is 3 MB.
File type
not supported.
Supported file types:
Documents (.txt, .doc, .docx, .pdf), Images (.jpg, .png), Comma Separated Files
(.csv) Speadsheets (.xlsx, .xls)
Are you sure you want to cancel the case creation?
Case closed successfully
File Upload
Maximum file size allowed is 3 MB.
File type not supported.
Supported file types:
Documents (.txt, .doc, .docx, .pdf), Images (.jpg, .png), Comma Separated Files
(.csv) Speadsheets (.xlsx, .xls)
Are you sure you want to close this case
| Products | Region | Phone Numbers |
|---|---|---|
| FlexNet Operations FlexNet Embedded FlexNet Publisher FlexNet Connect FlexNet Code Insight InstallAnywhere InstallShield |
North America * |
+1 630-332-2513 (toll) +1 877-279-2853 (toll-free in North America) |
| Europe * |
+44 1925 944367 (toll) +44 800 047 8642 (toll-free in Europe) |
|
| Japan * | +81 3-4540-5335 (select option 2) | |
| Australia * |
+61 3 9895 2177 +61 1800 560 603 (toll-free in Australia) |
|
|
Usage Intelligence (formerly
Revulytics) Compliance Intelligence |
Please use the Case Portal to submit your support ticket or reach out to your Revenera contact. | |
File Upload
Maximum file
size allowed is 3 MB.
File type
not supported.
Supported file types:
Documents (.txt, .doc, .docx, .pdf), Images (.jpg, .png), Comma Separated Files
(.csv) Speadsheets (.xlsx, .xls)
Revenera Assistant
© 2026 Flexera Software. All Rights Reserved.
Case id: 00001065
Activity: Status change: 2 hours ago