Skip to main content
Workspace ONE Access This section describes how to create a Web App inside Workspace ONE Acces (WSOA). First, login to the WSOA user interface and browse to Resources -> Web Apps -> New Next, enter values for the following options before clicking on Next. On the Single Sign-On page, enter the following values: Still on the Single Sign-On page, in the Advanced Properties section, set the following toggle buttons; At the bottom of the Single Sign-On page, in the Custom Attribute Mapping section, add the following attributes: Click Next to continue and select the access policy as required by your organization. Now it’s time to click the Save & Assign button and permit the Users and Groups allowed to login to Omni. On the Assign screen, enter the following:
  • Select the permitted group from your backing Active Directory or LDAP server.
  • Set the Deployment Type to Automatic.
Finally, obtain the IdP Metadata URL by clicking on Settings and then the Copy URL link.
This is the URL that will be used by Omni in the command line arguments in the next section.

Omni

Provide the following flags to the Omni container on launch. For example;
Now that you have started Omni with the correct flags, refer to the Auto-assign roles to SAML users guide for information on how to automatically assign roles to users based on their SAML attributes. Note that when using groups, the group name is prefixed with saml.omni.sidero.dev/groups/ instead of role. For example;