Circonus
Before You Begin
Introduction
This document describes how to configure Oracle Identity Cloud Service to provide Single Sign-On (SSO) for Circonus using SAML.
About Circonus
Circonus identifies engagement trends and offers custom analytics which can determine expected web traffic.
After integrating the Circonus application with Oracle Identity Cloud Service:
- Users can access Circonus using their Oracle Identity Cloud Service login credentials.
- Users can start Circonus using the Oracle Identity Cloud Service My Apps console.
- Administrators can assign and revoke user access to the Circonus application using the Oracle Identity Cloud Service administration console.
What Do You Need?
- An Oracle Identity Cloud Service account with authorization rights to manage apps and users (Identity Domain Administrator or Application Administrator).
- A Circonus account with authorization rights to configure federated authentication.
- A Circonus account with a verified domain to include when you register the Circonus app in Oracle Identity Cloud Service.
- Make sure that the email ID of each user in Circonus matches the primary email ID of the Oracle Identity Cloud Service account.
Configuring the Circonus App in Oracle Identity Cloud Service
Use this section to register and activate the Circonus SaaS App, and then assign users to the application.
Prerequisite Step
A verified domain name is required before you can register and activate the Circonus app. You obtain that domain name from Circonus.
Registering and Activating the Circonus App
Access the Oracle Identity Cloud Service administration console, select Applications, and then click Add.
Click App Catalog.
Search for
Circonus
, and then click Add.In the App Details section, enter your domain name in the Domain Name field, and then click Next.
Click Download IDCS Metadata.
Tip: This file is used later during the Circonus configuration in the "Configuring SSO for Circonus" section.
Click Finish. Oracle Identity Cloud Service displays a confirmation message.
Click Activate, and then click Activate Application. Oracle Identity Cloud Service displays a confirmation message.
Assigning Users to the Circonus App
On the Circonus App page in Oracle Identity Cloud Service, select the Users tab, and then click Assign. The Assign Users window appears.
Select the users that you want to assign to Circonus, and then click OK. Oracle Identity Cloud Service displays a confirmation message stating that the Circonus app is assigned to the users that you selected.
Configuring SSO for Circonus
Access Circonus as an administrator at:
https://login.circonus.com
Click Menu, and then under the account section select Profile.
On the Account Profile window, click the Edit link in SAML section.
Select the following attribute settings, and then click OK.
Attribute Settings SAML Provider Select the SAML provider from the drop-down. IDP Login URL Enter the IDP Login URL: https://<IDCS-Service-Instance>.identity.oraclecloud.com/fed/v1/idp/sso
IDP Issuer Enter the IDP Issuer: https://<IDCS-Service-Instance>.identity.oraclecloud.com/fed/v1/idp/sso
Email Domain Enter the Email Domain. IDP Certificate Paste the certificate into the IdP Certificate box. You downloaded the certificate during Circonus registration in Oracle Identity Cloud Service. See the "Registering and Activating the Circonus App" section.
Verifying Identity Provider Initiated SSO from Oracle Identity Cloud Service
Use this section to verify that SSO works when initiated from both Oracle Identity Cloud Service (IdP Initiated SSO) and Circonus (SP Initiated SSO).
Access the Oracle Identity Cloud Service My Profile console:
https://<IDCS-Service-Instance>.identity.oraclecloud.com/ui/v1/myconsole
.Log in using credentials for a user that is assigned to the Circonus App. Oracle Identity Cloud Service displays a shortcut to Circonus under My Apps.
Click Circonus. The Circonus home page appears.
On the Circonus home page, confirm that the user that is logged in is the same for both Circonus and Oracle Identity Cloud Service.
This confirms that SSO that is initiated from Oracle Identity Cloud Service works.
Verifying Service Provider Initiated SSO from Circonus
Access the Circonus login page (
https://<Domain_Name>.circonus.com
).Enter only the email address and under 'Single Sign On' select IDCS as an option.
You are redirected to the Oracle Identity Cloud Service login page.
Log in using credentials for a user that is assigned to the Circonus SaaS Application. The Circonus home page appears.
On the Circonus home page, confirm that the user that is logged in is the same for both Circonus and Oracle Identity Cloud Service.
This confirms that SSO that is initiated from Circonus works.
Troubleshooting
Use this section to locate solutions to common integration issues.
Known Issues
Circonus displays the message “Sorry about this - some part of the system has obviously gone haywire...." during SSO.
Cause 1: The email attribute sent by Oracle Identity Cloud Service during SSO doesn't match any existing user in Circonus.
Solution 1: Ensure that the user that is signed in has an account in both Oracle Identity Cloud Service and Circonus with the same email address.
Cause 2: The Domain Name might be incorrect.
Solution 2: Provide the correct Domain Name.
Unknown Issues
For unknown issues, contact Oracle Support:
Go to https://support.oracle.com.
Select Cloud Support, and then sign in with your support credentials.
In the Cloud Dashboard, confirm that there are no planned outages in Oracle Identity Cloud Service, and then click Create Service Request.
Select Oracle Identity Cloud Service as the service type.
Complete your service request.