Redefine the IdP Configuration

This is the preferred approach for sharing the same SAML configuration in multiple NetSuite accounts.

To redefine the IdP configuration:

  1. In a role with the Setup SAML Single Sign-on permission, or in an Administrator role, log in to a NetSuite account where the IdP metadata is shared.

  2. Go to Setup > Integration > Manage Authentication > SAML Single Sign-on. Note the value in the read-only Entity ID field.

  3. On the SAML Setup page under Actions, click Delete IdP Configuration. For more information, see Remove the Current IdP Metadata.

    Note:

    Make a list of all accounts from which you delete the IdP configuration file, meaning accounts that share the same Entity ID value.

  4. Repeat steps 1-3 for each account that shares the same IdP configuration file.

  5. Log in to the website of your IdP.

  6. Locate the IdP metadata configuration file for the NetSuite application.

  7. Copy the URL for this file or download the IdP metadata file from your IdP.

    Important:

    You must use this same file in the future when you add new accounts to your SAML configuration. If anything changes in the IdP metadata file, the IdP configuration must be redefined. Uploading an IdP metadata file containing any differences will generate a SAML Metadata Warning error message in the UI.

  8. Refer to the list of accounts from which you deleted the IdP metadata. Log in to each account and go to Setup > Integration > Manage Authentication > SAML Single Sign-on. Either upload the IdP metadata file or point to the location (the URL) of the file from your IdP.

    Note:

    See Update the IdP Configuration File and Change Your IdP for NetSuite if you need more information about these options.

  9. Log in to any new accounts you want to configure with the same IdP metadata and go to Setup > Integration > Manage Authentication > SAML Single Sign-on. Either upload the IdP metadata file or point to the location (the URL) of the file from your IdP

Related Topics

General Notices