Configuring SAML-Based SSO with Houghton Mifflin Harcourt (HMH)

RapidIdentity Platform Documentation

Solution
Application
Content Type
Technical Documentation
Utilities & Services
ft:locale
en-US

Houghton Mifflin Harcourt (HMH) supports a SAML-based single sign-on (SSO) service for its web-based application that you can configure in your RapidIdentity portal. These configuration settings are an example and may vary for individual configurations.

Additionally, HMH needs to set GET to access the redirect URL instead of POST.

Requirements
  • HMH administrator credentials
  • Access to your RapidIdentity administrator portal
  1. Navigate to your RapidIdentity administrator portal.
  2. From the module selector, choose Configuration.
  3. Select Security > Identity Providers and download the identity provider certificate (.pem).

    Keep this browser window open. You will need the Base URL and Logout URL for later steps.

  4. On the HMH website, configure HMH settings using the RapidIdentity certificate and URLs, then download the HMH metadata.
  5. Return to your RapidIdentity administrator portal and select Security > Identity Providers > Federation Partners.
  6. Click Add Federation Partner > SAML 2.0, then click Create SAML Relying Party.
  7. In the General section, add a name and paste the HMH metadata in the Metadata field.
  8. In the SSO Settings section, configure the following settings:
    1. Sign SAML2 SSO Response: Never
    2. Sign SAML2 SSO Assertions: Never
    3. Encrypt SAML2 SSO Assertions: Never
    4. Encrypt SAML2 SSO Name IDs: Never
  9. In the Attribute Mapping section, configure the LDAP attributes for your environment.
  10. Click Create, then click Save.

RapidIdentity and HMH are now integrated, allowing users to authenticate to HMH with their RapidIdentity credentials.