You can use Single Sign-on (SSO) via a SAML2 with the Springcast mobile app. If you would like to set up SSO for the workspace as well, please read this article.
Good to know:
- In the examples below, we assume Microsoft Entra ID as the identity provider (IdP).
- You will probably have to involve your company's IT department when enabling SSO. They will probably have to make the necessary configuration on their end.
- If you enable SSO, you will no longer be able to manage users via our platform. This is done via the IdP. The only exception to this is, for example, an external person who is not in the IdP, such as a podcast editor.
- When setting up SSO, you also specify the domain. This domain must be unique across all workspaces in Springcast PRO. So you cannot link 2 workspaces to 1 domain.
- At the moment, only the workspace owner can set up SSO.
Preparations IdP
A number of preparations are needed within the identity provider. These preparations will probably have to be done by the IT department.
Groups
Access to the mobile app is based on groups. You can match the groups you create within the IdP with the groups within Springcast PRO. The groups are set every time a user logs in. You can create the groups in Springcast PRO yourself. You can also match these with the groups in the IdP. For example:
| Group in Springcast PRO | Group in IdP |
| alle_medewerkers | springcast_pro_mobile_all_employees |
| technische_dienst | technical-service |
For each podcast show, you can indicate which group(s) have access to the podcast show in question. People in the group in question will then have access to the podcast show in the mobile app.
Users
You place the user(s) in the relevant group within the IdP. In addition, the following information is required for each user: Display name, First name, Last name, User principal name, Email. This information is provided by means of claims during login. You can use any other fields for this when creating the application in the IdP.
Create application in IdP
- Are you using Microsoft Entra ID? Continue with this guide: Implementation SSO: Microsoft
- Are you using Okta? Continue with this guide: Implementation SSO - Okta
- Are you using something else? You can continue with either one, since it contains the information that you need to the implementation, although it could be that some of the naming/steps are different in the IdP you are using.
Let's get to work!
SSO is now configured and can be used by your organisation's employees. Tip: if you are going to test it, do so in a different browser or in an incognito window, for example. In the unlikely event that something is wrong with the settings, you will still be logged in to PRO and can make the necessary adjustments.
You can test SSO for the mobile app in your browser via this URL: https://work.springcast.app/mobile/login
In the unlikely event that you experience any problems, please feel free to contact us!