Clever supports a SAML-based single sign-on (SSO) service for its web-based application that you can configure in your RapidIdentity portal. These configuration settings are an example and may vary for individual configurations.
Requirements
- Clever district administrator credentials
- Access to your RapidIdentity administrator portal
- Navigate to your RapidIdentity administrator portal.
- From the module selector, choose Configuration.
- Select .
- Click , then click Create SAML Relying Party.
- In the General section, paste the Clever metadata in the Metadata field.
Note:
Remove the validUntil entry, if present.
- In the SSO Settings section, configure the settings according to Clever's requirements.
- In the Attribute Mapping section, click Add New Attribute + and configure the following LDAP attribute:
Important:
Match the case (uppercase/lowercase) exactly when creating LDAP attributes.
| LDAP Attribute | SAML Name | Friendly Name | Name Format | Name Format Value |
|---|
mail | clever.any.email | clever.any.email | URI Reference | urn:oasis:names:tc:SAML:2.0:attrname-format:uri |
- Set the following attribute permissions:
| Name | Permit/Deny |
|---|
clever.any.email | Permit |
| SAML Transient ID | Deny |
- Click Create, then click Save.
RapidIdentity and Clever are now integrated, allowing users to authenticate to Clever with their RapidIdentity credentials.