NINJAONE

Duo Single Sign-on for NinjaOne

- Strengthen security and reduce platform by ensuring technicians use Duo's centralized SSO capabilities.

- Provide a simpler, more seamless single sign-on experience for technicians accessing NinjaOne's automated endpoint management solution.

- Provide a simpler, more seamless single sign-on experience for end-users accessing NinjaOne's self-service IT portal solution.

Description

Add two-factor authentication and flexible security policies to NinjaOne SAML 2.0 logins with Duo Single-Sign On. This integration allows for seamless single sign-on for both technicians using NinjaOne's automated endpoint management solution and end-users using NinjaOne's self-service IT portal.

Leverage Duo's highly-configurable single-sign on solution to enforce, manage, and track the use of MFA for technician's accessing NinjaOne.

Features

Login via NinjaOne SSO Page

You can log on to NinjaOne by navigating to your NinjaOne SSO page e.g., https://app.ninjarmm.com/auth/#/login. Enter your email address and click Sign In to be redirected to Duo Single Sign-On to begin authentication.

Active Directory Login

With Active Directory as the Duo SSO authentication source, enter the primary username (email address) on the Duo SSO login page and click or tap Next.

Enter the AD primary password and click or tap Log in to continue.

 

SAML Login

With another SAML identity provider as the Duo SSO authentication source, Duo SSO immediately redirects the login attempt to that SAML IdP for primary authentication. Users do not see the Duo SSO primary login screen.

 

Duo Authentication

Successful verification of your primary credentials by Active Directory or a SAML IdP redirects back to Duo. Complete Duo two-factor authentication when prompted and then you'll return to NinjaOne to complete the login process.

NinjaOne supports SP-initiated authentication only, meaning that you must start your SSO login from that application's sign-in page. You won't be able to add NinjaOne as an application tile in Duo Central for IdP-initiated logins.

 Congratulations! Your NinjaOne users now authenticate using Duo Single Sign-On.

 

Enable Remembered Devices

To minimize additional Duo two-factor prompts when switching between NinjaOne and your other Duo Single Sign-On SAML applications, be sure to apply a shared "Remembered Devices" policy to your SAML applications.