<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SAML for MSP/multiple organizations - any changes? in Cloud Networking Platform</title>
    <link>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411726#M4225</link>
    <description>&lt;P&gt;As long as you're using the same X.509 cert SHA1 fingerprint in all Orgs and leveraging SAML Roles correctly as per the documentation that &lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/82153"&gt;@spaladug&lt;/A&gt; linked too, you will be able to then users accessing all Orgs and manage the group membership in your IdP.&lt;/P&gt;</description>
    <pubDate>Thu, 04 Apr 2024 07:40:42 GMT</pubDate>
    <dc:creator>JamesT91</dc:creator>
    <dc:date>2024-04-04T07:40:42Z</dc:date>
    <item>
      <title>SAML for MSP/multiple organizations - any changes?</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411721#M4220</link>
      <description>&lt;P&gt;I posted a few years ago about SAML for Meraki Dashboard access for MSP/multiple organizations. Curious if there was any update to that. Onboarding/offboarding users is quite tedious. &lt;/P&gt;</description>
      <pubDate>Wed, 03 Apr 2024 21:25:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411721#M4220</guid>
      <dc:creator>iscs-mark</dc:creator>
      <dc:date>2024-04-03T21:25:06Z</dc:date>
    </item>
    <item>
      <title>Re: SAML for MSP/multiple organizations - any changes?</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411722#M4221</link>
      <description>&lt;P&gt;Hi mvalpreda. We do currently support SAML for MSPs (&lt;A href="https://documentation.meraki.com/General_Administration/Managing_Dashboard_Access/Configuring_SAML_Single_Sign-on_for_Dashboard#SAML_SSO_for_MSPs" target="_self" rel="nofollow noopener noreferrer"&gt;reference&lt;/A&gt;). If you are following those requirements and still find it too tedious please share more about your exact use case so we can look into it.&lt;/P&gt;</description>
      <pubDate>Wed, 03 Apr 2024 22:01:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411722#M4221</guid>
      <dc:creator>spaladug</dc:creator>
      <dc:date>2024-04-03T22:01:26Z</dc:date>
    </item>
    <item>
      <title>Re: SAML for MSP/multiple organizations - any changes?</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411723#M4222</link>
      <description>&lt;P&gt;I agree but Meraki is one of the best solutions to provide your admins with restricted privileged access using role attributes. This does make it a little bit complex to onboard, however offboarding isn't that difficult. &lt;/P&gt;</description>
      <pubDate>Wed, 03 Apr 2024 22:23:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411723#M4222</guid>
      <dc:creator>Pulkit Mittal</dc:creator>
      <dc:date>2024-04-03T22:23:10Z</dc:date>
    </item>
    <item>
      <title>Re: SAML for MSP/multiple organizations - any changes?</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411724#M4223</link>
      <description>&lt;P&gt;I should have been more specific....when we need someone to have access to a customers Meraki dashboard, we go in there as another admin and add them. If that person leaves, we have to remember they are not in there any longer. Between keeping records, going in each organization one by one to remove a user....that is tedious.&lt;/P&gt;&lt;P&gt;That being said, I'm not 100% sure where to start based on that referenced link. If we have ~100 customers with Meraki organizations....where do I start? Had gone through the Azure AD setup (&lt;A href="https://documentation.meraki.com/General_Administration/Managing_Dashboard_Access/Configuring_SAML_SSO_with_Azure_AD" target="_self" rel="nofollow noopener noreferrer"&gt;here&lt;/A&gt;) for our own organization, when I test I get 'true', but just not sure how to add that to our customers.&lt;/P&gt;&lt;P&gt;Also not sure how Meraki is differentiating between my email address that is in SAML compared to my Cisco/Meraki login....they have different passwords. Do I need to log in at a different URL?&lt;/P&gt;</description>
      <pubDate>Thu, 04 Apr 2024 03:05:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411724#M4223</guid>
      <dc:creator>iscs-mark</dc:creator>
      <dc:date>2024-04-04T03:05:26Z</dc:date>
    </item>
    <item>
      <title>Re: SAML for MSP/multiple organizations - any changes?</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411725#M4224</link>
      <description>&lt;P&gt;If I see '&lt;SPAN&gt;Found existing non-SAML user with email &amp;lt;myemail&amp;gt;' do I need to remove that user as a named admin from the Administrators list for the org? Or is that going to be an issue since I am in ~100 other orgs?&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Then for customers I want to have as part of our SAML, the Consumer URL does not matter, just the X.509 cert fingerprint for the organization?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Figured out the login is at &lt;A href="https://myapplications.microsoft.com/" target="_blank" rel="noopener nofollow noreferrer"&gt;https://myapplications.microsoft.com/&lt;/A&gt; &lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 04 Apr 2024 03:36:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411725#M4224</guid>
      <dc:creator>iscs-mark</dc:creator>
      <dc:date>2024-04-04T03:36:27Z</dc:date>
    </item>
    <item>
      <title>Re: SAML for MSP/multiple organizations - any changes?</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411726#M4225</link>
      <description>&lt;P&gt;As long as you're using the same X.509 cert SHA1 fingerprint in all Orgs and leveraging SAML Roles correctly as per the documentation that &lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/82153"&gt;@spaladug&lt;/A&gt; linked too, you will be able to then users accessing all Orgs and manage the group membership in your IdP.&lt;/P&gt;</description>
      <pubDate>Thu, 04 Apr 2024 07:40:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411726#M4225</guid>
      <dc:creator>JamesT91</dc:creator>
      <dc:date>2024-04-04T07:40:42Z</dc:date>
    </item>
    <item>
      <title>Re: SAML for MSP/multiple organizations - any changes?</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411727#M4226</link>
      <description>&lt;P&gt;So the cert I get from Enterprise Applications in &lt;A href="https://documentation.meraki.com/General_Administration/Managing_Dashboard_Access/Configuring_SAML_SSO_with_Azure_AD#Enabling_SAML_SSO_in_Azure_Active_Directory" target="_blank" rel="nofollow noopener noreferrer"&gt;https://documentation.meraki.com/General_Administration/Managing_Dashboard_Access/Configuring_SAML_SSO_with_Azure_AD#Enabling_SAML_SSO_in_Azure_Active_Directory&lt;/A&gt; is the same one I am going to use in all the organizations I have access to and want to use SAML?&lt;/P&gt;&lt;P&gt;The Consumer URL is different for the different orgs and won't matter?&lt;/P&gt;&lt;P&gt;Guessing if I have the same email address already defined as an administrator, I need to pull that out so there is not a conflict between what is defined and in SAML?&lt;/P&gt;</description>
      <pubDate>Sun, 07 Apr 2024 23:05:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411727#M4226</guid>
      <dc:creator>iscs-mark</dc:creator>
      <dc:date>2024-04-07T23:05:59Z</dc:date>
    </item>
    <item>
      <title>Re: SAML for MSP/multiple organizations - any changes?</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411728#M4227</link>
      <description>&lt;P&gt;You will need to login via a different URL e.g. "domain.sso.meraki.com". If you already have an Organization Administrator account using the same email as your SAML then you will need to remove it from that Organization before you can leverage SSO.&lt;/P&gt;</description>
      <pubDate>Mon, 08 Apr 2024 04:07:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411728#M4227</guid>
      <dc:creator>RTownsend</dc:creator>
      <dc:date>2024-04-08T04:07:05Z</dc:date>
    </item>
    <item>
      <title>Re: SAML for MSP/multiple organizations - any changes?</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411729#M4228</link>
      <description>&lt;P&gt;I did a little test and yes....add the x.509 to all the orgs, add the SAML administrators and it's set. Guessing the Meraki dashboard 'sees' that the cert is the same and ties them together.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Apr 2024 23:29:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411729#M4228</guid>
      <dc:creator>iscs-mark</dc:creator>
      <dc:date>2024-04-09T23:29:15Z</dc:date>
    </item>
    <item>
      <title>Re: SAML for MSP/multiple organizations - any changes?</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411730#M4229</link>
      <description>&lt;P&gt;Glad you got it working. &lt;SPAN class="lia-unicode-emoji" title=":grinning_face_with_smiling_eyes:"&gt;&lt;span class="lia-unicode-emoji" title=":grinning_face_with_smiling_eyes:"&gt;😄&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 10 Apr 2024 07:14:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/saml-for-msp-multiple-organizations-any-changes/m-p/5411730#M4229</guid>
      <dc:creator>JamesT91</dc:creator>
      <dc:date>2024-04-10T07:14:26Z</dc:date>
    </item>
  </channel>
</rss>

