Setting Up RUCKUS One Login Access for SSO Admin Group Users
RUCKUS One has an enhanced administrative feature that allows SSO users to log into RUCKUS One. In this method, users authenticated using Azure Active Directory (AD) are automatically provisioned according to the group in which they are members. This bypasses the need to directly add an individual administrator in RUCKUS One. You need to create an Admin Group by specifying the Object ID of the group defined in the AD, and assigning an RBAC role for the group. The individual users that belong to the specified group in the AD inherit the role assigned to the Admin Group and can use the AD credentials to seamlessly log into RUCKUS One.
- Set up SSO and define the allowed domains for user authentication. Refer to step 1 through step 5 in Setting Up SSO with a 3rd Party Provider.
- Create an Admin Group. Refer to Creating an Admin Group.
- Log in using the SSO option. Refer to Logging In Using the SSO Option.
- View Admin Group details. Refer to Viewing Admin Group Details.
Creating an Admin Group
When SSO is enabled, the Admin Groups tab is added to the Administrators page. You can create an Admin Group by specifying the Object ID defined in Azure AD and assigning an RBAC role for the group. The individual users that belong to the specified group inherit the role assigned to the Admin Group.
Logging In Using the SSO Option
After setting up the SSO and creating the Admin Groups, the user who is a member of the Admin Group can log into RUCKUS One using SSO with their Email address. The user will be redirected to the Active Directory where the user can use the AD credentials to seamlessly log into RUCKUS One after successful SSO authentication.