MeetMax now supports SAML-based Single Sign-on in order to allow easier centralized account management for enterprise clients.
Note: before you can get started using this solution, you will need to reach out to TWST Sales and sign up for the annual licensing agreement.
Domains
You must provide one or more domain names (e.g. "twst.com") for the SSO configuration within MeetMax. This must match the domain(s) of the email addresses used for your administrative user ("Client Rep") accounts.
Exclusive SSO-only Login
You will also need to decide whether you would like to enforce SSO-only login or whether you will still allow users to log in with just a username and password as well. Most clients who are using SSO for the enhanced security protections that it provides will likely want to enable this setting.
Account Management
- Administrative users ("Client Reps") will still need to be created within MeetMax, in addition to being created within the identity provider.
- Client rep usernames must be the company-issued email address of the user which is tied to the identity provider.
- Passwords must still be set for a Client Rep account even when SSO is being used exclusively, even though the password will not be used.
Configuring Single Sign-On
Note: these next steps are typically taken by your identity provider administrator or their designee, as they will require making configuration changes within your identity provider solution.
- Once the MeetMax Support team has enabled the Single Sign-on feature for your account, you can navigate to Configure - Event Settings - SAML/SSO.
- Here, you can edit the supported domain(s) and toggle the setting for whether password login should be disabled (see Exclusive SSO-only Login above).
- To begin configuration with your identity provider, click Configure Single Sign-On from this screen.
- Selecting your identity provider
- WorkOS is the platform we use for allowing SAML-based SSO integrations.
- They provide options for dozens of common identity providers, as well as the ability to set configure Custom SAML solutions.
- Next steps
- The next steps in the configuration process depend upon your chosen identity provider.
- After each step, you will click Continue to Next Step.
- Once you have completed the process, you should now find that users which have been assigned access to this resource can now gain access using the Single Sign-On link from the client login page.