> ## Knowledge Base Index
> Fetch the complete knowledge base index at: https://helpdesk.ggcircuit.com/sitemap.xml
> Use this file to discover available pages before exploring further.
> Pure-Markdown content can be obtained by appending a '.md' suffix to the content URLs listed in the sitemap (without the trailing slash).

# 为 ggLeap 配置 SAML SSO

## 为 ggLeap 配置 SAML 单点登录

本文概述了为 ggLeap 配置 SAML 单点登录 (SSO) 的步骤，允许用户使用其 SAML 身份提供商 (IdP) 的现有凭证登录。

**前提条件:**

* 您有权访问 ggLeap 管理门户。
* 您已配置 SAML IdP（例如 Shibboleth、Azure AD、Google Workspace）。
* 您有 SAML IdP 的元数据 URL。

**步骤:**

1. **导航至** [**插件页面**](https://admin.ggleap.com/settings/add-ons):

* 登录到您的 ggLeap 管理门户。
* 转到 **设置** > **插件**

2. **访问 SAML SSO 插件:**

* 找到并单击 **Saml SSO** 插件。

![](https://storage.crisp.chat/users/helpdesk/website/-/a/f/d/6/afd6941e8bc7d800/image-20250310-183816_1t4jqal.png)

3. **配置 InCommon 联邦参与者（如适用）:**

* 如果标有"您的机构是 Incommon 联邦参与者"的切换开关已启用，**请将其关闭，除非您是 Incommon 联邦参与者。**

![](https://storage.crisp.chat/users/helpdesk/website/-/a/f/d/6/afd6941e8bc7d800/image-20250310-184007_b7xwv2.png)

4. **输入您的 IdP 元数据 URL:**

* 在之前标有"InCommon Entity ID"的字段中，**输入您的 SAML 身份提供商的元数据 URL**。

![](https://storage.crisp.chat/users/helpdesk/website/-/a/f/d/6/afd6941e8bc7d800/image-20250310-184042_d7udal.png)

5. **输入 SSO 配置 ID（如果需要）:**

* 如果您的设置需要特定的 SSO 配置 ID（例如，对于多租户 Azure AD 配置），在"SSO 配置 ID"字段中输入它。
* **注意:** 对于大多数标准设置，此字段可以留空。

![](https://storage.crisp.chat/users/helpdesk/website/-/a/f/d/6/afd6941e8bc7d800/image-20250310-184100_d9akin.png)

6. **保存您的设置:**

* 单击 **保存** 按钮。

**在您的身份提供商 (IdP) 上:**

* 您需要配置您的 SAML IdP 以信任 ggLeap 作为服务提供商 (SP)。
* 为 ggLeap 使用以下元数据 URL:

```
  [https://sp.ggleap.com](https://sp.ggleap.com)
```

**重要注意事项:**

* **元数据 URL:** 确保您使用的是来自 IdP 的正确元数据 URL。这对于建立信任关系至关重要。
* **SSO 配置 ID:** 仅在您有特定需求（例如多租户设置）时使用此选项。如果您不确定，请咨询您的 IT 部门或 ggLeap 支持。
* **IdP 配置:** 您的 IdP 上的具体配置步骤将根据您使用的平台而有所不同。有关详细说明，请参阅您的 IdP 的文档。
* **测试:** 配置 ggLeap 和您的 IdP 后，使用 ggLeap SAML SSO 设置中的"测试连接"按钮来验证连接。