Circonus

Before You Begin

Introduction

This document describes how to configure Oracle Identity Cloud Service to provide Single Sign-On (SSO) for Circonus using SAML.

About Circonus

Circonus identifies engagement trends and offers custom analytics which can determine expected web traffic.

After integrating the Circonus application with Oracle Identity Cloud Service:

  • Users can access Circonus using their Oracle Identity Cloud Service login credentials.
  • Users can start Circonus using the Oracle Identity Cloud Service My Apps console.
  • Administrators can assign and revoke user access to the Circonus application using the Oracle Identity Cloud Service administration console.

What Do You Need?

  • An Oracle Identity Cloud Service account with authorization rights to manage apps and users (Identity Domain Administrator or Application Administrator).
  • A Circonus account with authorization rights to configure federated authentication.
  • A Circonus account with a verified domain to include when you register the Circonus app in Oracle Identity Cloud Service.
  • Make sure that the email ID of each user in Circonus matches the primary email ID of the Oracle Identity Cloud Service account.

Configuring the Circonus App in Oracle Identity Cloud Service

Use this section to register and activate the Circonus SaaS App, and then assign users to the application.

Prerequisite Step

A verified domain name is required before you can register and activate the Circonus app. You obtain that domain name from Circonus.

Registering and Activating the Circonus App

  1. Access the Oracle Identity Cloud Service administration console, select Applications, and then click Add.

  2. Click App Catalog.

  3. Search for Circonus, and then click Add.

  4. In the App Details section, enter your domain name in the Domain Name field, and then click Next.

  5. Click Download IDCS Metadata.

    Tip: This file is used later during the Circonus configuration in the "Configuring SSO for Circonus" section.

  6. Click Finish. Oracle Identity Cloud Service displays a confirmation message.

  7. Click Activate, and then click Activate Application. Oracle Identity Cloud Service displays a confirmation message.

Assigning Users to the Circonus App

  1. On the Circonus App page in Oracle Identity Cloud Service, select the Users tab, and then click Assign. The Assign Users window appears.

  2. Select the users that you want to assign to Circonus, and then click OK. Oracle Identity Cloud Service displays a confirmation message stating that the Circonus app is assigned to the users that you selected.

Configuring SSO for Circonus

  1. Access Circonus as an administrator at: https://login.circonus.com

  2. Click Menu, and then under the account section select Profile.

  3. On the Account Profile window, click the Edit link in SAML section.

  4. Select the following attribute settings, and then click OK.

    Attribute Settings
    SAML Provider Select the SAML provider from the drop-down.
    IDP Login URL Enter the IDP Login URL: https://<IDCS-Service-Instance>.identity.oraclecloud.com/fed/v1/idp/sso
    IDP Issuer Enter the IDP Issuer: https://<IDCS-Service-Instance>.identity.oraclecloud.com/fed/v1/idp/sso
    Email Domain Enter the Email Domain.
    IDP Certificate Paste the certificate into the IdP Certificate box. You downloaded the certificate during Circonus registration in Oracle Identity Cloud Service. See the "Registering and Activating the Circonus App" section.

Verifying Identity Provider Initiated SSO from Oracle Identity Cloud Service

Use this section to verify that SSO works when initiated from both Oracle Identity Cloud Service (IdP Initiated SSO) and Circonus (SP Initiated SSO).

  1. Access the Oracle Identity Cloud Service My Profile console: https://<IDCS-Service-Instance>.identity.oraclecloud.com/ui/v1/myconsole.

  2. Log in using credentials for a user that is assigned to the Circonus App. Oracle Identity Cloud Service displays a shortcut to Circonus under My Apps.

  3. Click Circonus. The Circonus home page appears.

  4. On the Circonus home page, confirm that the user that is logged in is the same for both Circonus and Oracle Identity Cloud Service.

    This confirms that SSO that is initiated from Oracle Identity Cloud Service works.

Verifying Service Provider Initiated SSO from Circonus

  1. Access the Circonus login page (https://<Domain_Name>.circonus.com).

  2. Enter only the email address and under 'Single Sign On' select IDCS as an option.

    You are redirected to the Oracle Identity Cloud Service login page.

  3. Log in using credentials for a user that is assigned to the Circonus SaaS Application. The Circonus home page appears.

  4. On the Circonus home page, confirm that the user that is logged in is the same for both Circonus and Oracle Identity Cloud Service.

    This confirms that SSO that is initiated from Circonus works.

Troubleshooting

Use this section to locate solutions to common integration issues.

Known Issues

Circonus displays the message “Sorry about this - some part of the system has obviously gone haywire...." during SSO.

Cause 1: The email attribute sent by Oracle Identity Cloud Service during SSO doesn't match any existing user in Circonus.

Solution 1: Ensure that the user that is signed in has an account in both Oracle Identity Cloud Service and Circonus with the same email address.

Cause 2: The Domain Name might be incorrect.

Solution 2: Provide the correct Domain Name.

Circonus displays the message “You are not authorized to access the application. Contact your system administrator." during SSO.

Cause 1: The SAML 2.0 integration between the Oracle Identity Cloud Service Circonus App and Circonus is deactivated.

Solution 1:

  • Access the Oracle Identity Cloud Service administration console, select Applications, and then Circonus.
  • Click Activate, and then click Activate Application. Oracle Identity Cloud Service displays a confirmation message.

Cause 2: The error occurs when the administrator revokes access for the user while the user is trying to access the Circonus app using Oracle Identity Cloud Service.

Solution 2: Access the Oracle Identity Cloud Service administration console, select Applications, Circonus, Users, and then click Assign to re-assign the user.

Unknown Issues

For unknown issues, contact Oracle Support:

  1. Go to https://support.oracle.com.

  2. Select Cloud Support, and then sign in with your support credentials.

  3. In the Cloud Dashboard, confirm that there are no planned outages in Oracle Identity Cloud Service, and then click Create Service Request.

  4. Select Oracle Identity Cloud Service as the service type.

  5. Complete your service request.