Kudoboard SSO Setup Guide

This guide will walk you through the necessary steps to set up Single Sign-On (SSO) integration for your organization. Once configured, SSO will allow users to securely log in to Kudoboard using your organization’s identity provider (IdP).

Kudoboard offers a SAML 2.0-based Single sign-on (SSO) configuration, and is available to enterprise customers. SSO login is not available on Business and Pro plans.

 

Prerequisites


  • Identity Provider (IdP): Ensure your organization uses an IdP that supports SAML 2.0 (e.g., Okta, Azure AD, Entra ID, OneLogin, etc.).
  • SSO Administrator Access: You will need administrative access to your IdP.

 

Configure Your Identity Provider (IdP)


  1. Create a New Application: In your IdP’s admin dashboard, add a new SAML 2.0 application for Kudoboard.
  2. Enter Service Provider (SP) Details: In the application setup, enter the following details:
    • ACS (Assertion Consumer Service) URL: https://<your-subdomain>.kudoboard.com/saml/sso/acs
    • SP Entity ID: https://<your-subdomain>.kudoboard.com/saml/sso/metadata
    • Binding Type: POST
  3. Attribute Mapping: Configure attribute mappings so that Kudoboard receives the correct user attributes. The Email, FirstName, and LastName attribute names are case-sensitive.
    • NameID -> Any unique identifier that will not change or be reused if an individual leaves your organization. Employee ID is often the best option.
    • Email -> User’s email address
    • FirstName -> User’s first name
    • LastName -> User’s last name
  4. Set up sign-on Policy: Set any required policies to control who can access the Kudoboard application.
  5. Save the Configuration.

     

Configure SSO in Kudoboard


Send the URL to your metadata file or an XML download of it to sso@kudoboard.com, and we’ll quickly complete the setup on our end.

 

Test the SSO Configuration


Log out of Kudoboard, then go to the login page and choose Sign in with SSO. Complete the login process using your IdP credentials.

Common Erros

Common errors
We couldn't find the Email attribute in the SAML data we received from your SSO provider

This error could appear for any of the attributes required by Kudoboard. Review step 3 and confirm that all attributes are being sent and that their names match the names and casing outlined above.

Signature validation failed. SAML Response rejected
The certificate may have been entered on the Kudoboard side incorrectly. Confirm that the correct certificate has been sent to sso@kudoboard.com and ask that we double-check it.

 

Need Assistance? Contact our support team at sso@kudoboard.com for further help with SSO setup.

 

 

Was this article helpful?
0 out of 0 found this helpful
Have more questions? Submit a request