Skip to main content
Hi Celonis Community!
While configuring SAML for SSO you can specify the required AD group that contains users that can SSO into Celonis.
According to the documentation, on the config-custom.properties file there is a statement to indicate the AD group that SAML will use:
saml.users.requiredgroup=MyADGroup
Question is
could MyADgroup have nested groups?
Hi rgdilisio,
unfortunately that is not possible. Only one group can be specified.
I recommend here to create a group Celonis and add all the users you want to transfer via SSO.
best, Thomas

I believe this has changed in the meantime (not 100% certain) please check out this documentation on SSO with SAML:

 

https:///team]..clutster].celonis.cloud/help/display/CIBC/User+Provisioning+via+SAML+JIT

 

Best

Kevin


Reply