Rippling SAML

To enable users to log in to Zluri through Rippling, you need to set up SAML. This integration allows users to authenticate into Zluri using their Rippling-managed credentials, centralizing access control and improving security compliance.

Follow these steps to set up SAML SSO between Rippling (as the Identity Provider) and Zluri (as the Service Provider).

Configuration steps

Select domains allowed for SSO in Zluri

In Zluri, navigate to Settings → SSO and select the domains allowed for SSO login. Click Save when done.

If your domain is not listed, you can add it from Settings → Directory Management.

Create a custom app in Rippling

  1. Log in to Rippling as an admin, navigate to Home, click IT Management, and select Custom App from the left sidebar.
  2. Click on Create New App and give the app a descriptive name.
  3. Fill in the required details:
    • Give the app a descriptive name
    • Select a category
    • Upload a logo file
  4. Select Single Sign-On (SAML) as the authentication method.
  1. Click Continue.
  2. In the pop-up, select the option confirming that you are the app admin and click Continue.

Configure SAML settings

Obtain ACS URL and Entity ID from Zluri

  1. Navigate to Zluri's SSO Settings, scroll down, and click SAML.

  1. Copy the ACS URL and Entity ID.


Add SAML details in Rippling

  1. In the Settings tab, go to SSO Setup and select Click here under Update Single Sign-on Settings.

  2. Paste the ACS URL and Entity ID into the respective fields in Rippling, which was previously obtained from Zluri.

  3. After configuring SAML, copy the Single Sign-On URL and download the X.509 Signing Certificate from Rippling.

  4. Click Move to Next Step.

Complete SAML Setup in Zluri

  1. In Zluri’s SSO settings, paste this SSO URL and upload the X.509 Signing Certificate. Click Save.

📎 Alternatively, if you couldn’t obtain **Single Sign-On (SSO) URL** and **X.509 Signing Certificate,** once the app is created:
  • In IT management, select the Zluri tile to configure SAMLSettingsAdvanced SAML Attributes → obtain Single Sign On URL and Download X509 Signing Certificate to be uploaded to Zluri.

Configure SAML attributes

In Rippling, navigate to Zluri tile → Settings →Advanced SAML Attributes.

  1. Click Create New.

  2. In Create SAML attribute:

    • Set the attribute type to Global attribute.

    • Enter a name for the attribute.

    • Choose a Value as email address and save.

Disable automatic standardization of attributes

Rippling automatically modifies attribute names to match standard naming conventions. To pass the email attribute correctly, disable this setting:

  1. Go to Settings → select Advance SAML Settings in the left sidebar.

  2. Select Automatic Standardization of Attributes.

  3. Select the checkbox to disable the setting. Click Save.


Assign users and test login

  1. Navigate to the Overview tab and select Grant Access for the specific user.
image.png
  1. Enable SAML toggle in Zluri.
image.png

Then click Test connection to try logging in with your Rippling credentials. If the login is successful, the setup is complete. Next time any user of your organization tries to log in, they will be redirected to the Rippling login page.

Got questions? Feel free to submit a ticket or contact us directly at [email protected].