About JumpCloud SAML Integration
JumpCloud SAML integration in Iru Endpoint lets you set up SAML-based SSO integration with JumpCloud for users accessing Iru Endpoint through their JumpCloud credentials.How It Works
When users attempt to access Iru Endpoint, they’re redirected to JumpCloud for authentication. After successful authentication, JumpCloud sends a SAML assertion back to Iru Endpoint, which validates the user’s identity and grants access. SSO can be used for Iru Endpoint Web App sign-in and for Require Authentication with Automated Device Enrollment.- Iru Web App Configuration
- JumpCloud Application Configuration
Setting Up the SAML Connection
Navigate to the Account Menu Button
Access Authentication Settings

Select Admin and Authentication
Add Authentication Method
Enter Display Name
Select Authentication Method
Create Connection
Configuration Information
Copy Service Provider Entity ID
Copy ACS URL

Keep Tab Open
Configuring Iru Endpoint SAML Connection
Return to Iru Endpoint
Configure IdP Attribute
Configure Attribute Name
Configure User Attributes

Add IdP Entity ID
Add Sign-in URL
Upload Certificate

Set Request Binding
Set Request Signature Algorithm
Set Request Digest Algorithm
Enable Request Signing

Set Response Signature Verification
Set Destination
Set Allowed Signature Algorithm
Set Allowed Digest Algorithm
Save Configuration

Allow for Tenant Authentication
Once you have configured the SAML connection in Iru Endpoint and your identity provider, you can allow its use for tenant authentication. For step-by-step instructions, please refer to the Allowing Tenant Authentication and Managing Connections section in our Single Sign-on support article.Limit Authentication to Domain
When configuring the SAML connection, you can optionally limit authentication to one or more domains. This can be useful when the SSO connection could authenticate to multiple domains. You can limit the authentication to your Iru tenant to a subset of the available domains.Enforcing Single Sign-On
Once you have configured at least one Single Sign-on connection, you can disable Passkey, Google Social, and Microsoft Social connections. Disabling these connections will disable the ability for Iru Endpoint administrators in your tenant to authenticate via those methods. Please refer to our Single Sign-on support article for step-by-step instructions.Testing the Integration
Add User to Admin Team
Fill User Information
Submit User
Close Invite Window
Refresh Access Page
Test SSO Login










