Application NameThinkCentral - SAML
PublisherHoughton Mifflin Harcourt
Date Entered07/11/2016
Date Modified
webNetwork Version 6.3.0.246
Delivery MethodSAML
ConfigurationWeb Application Object
----------------------
Application Type: Public
Context Path: /ThinkCentral

Type: ADFS
Identity: @@attr:saMAccountname@@
SAML Initiation: Service Provider
Assertion Consumer: https://hmhco.auth0.com/login/callback?connection=YOURSCHOOLID
Audience*: urn:auth0:hmhco:YOURSCHOOLID
PFX Certificate: via wizard (Make sure to use the RSA option.)
Private Key: via wizard
Certificate: via wizard (Make sure to use the SHA256 option.)
SAML Signature Location: Response and Assertion
SAML Logout Behavior: Full Logout
 
Notes

The above webNetwork configuration will work in conjunction with the settings HMH ThinkCentral will need to make on their side to enable SAML SSO.

HMH ThinkCentral will be able to use the following URL to verify the webNetwork configuration:
https://FQDN-of-cloud/swPublicSSO/SAMLMetadata/ThinkCentral

You will also need to create a Standard Link that points to:
https://www-k6.thinkcentral.com/sp/access?sp=tc&connection=YOURSCHOOLID

*Note - To set the Audience, you must temporarily switch the SAML Initiation to Identity Provider. Enter the Audience, Save, Switch back to Service Provider, Save again. The Audience field will not be visible, but will be used.

**Replace YOURSCHOOLID, in the above fields, with the School ID provided by HMH ThinkCentral.