Authentication > Integrate Okta
Integrate OneLogin
This guide explains how to configure SAML-based Single Sign-On (SSO) between OneLogin and Tallyfy to enable automated user authentication and provisioning.
- OneLogin administrator account
- Tallyfy Professional or Enterprise plan
- SAML configuration values from Tallyfy Support
The integration involves three main phases:
- Creating and configuring a OneLogin SAML application connector
- Configuring SAML settings in both systems
- Enabling and testing the SSO integration
-
Sign in to your OneLogin portal
-
Open the Administration menu
-
Navigate to Applications > Applications
-
Click Add App
-
Search for “SAML Test Connector”
-
Select SAML Test Connector (Advanced)
-
Edit the Display Name to “Tallyfy”
-
Click Save
To properly configure OneLogin, you need Tallyfy’s default SAML values:
-
Contact Tallyfy Support to access your organization’s profile
-
Navigate to the Org Settings tab
-
Click Add Configuration Details
-
Locate the default SAML values section
-
Navigate to the Configuration tab in your OneLogin application connector.
-
Enter the Tallyfy SP ACS URL into the ACS (Consumer) URL field.
-
Enter the same URL into the Recipient field.
-
Enter the Tallyfy SP Entity ID into the Audience (EntityID) field.
-
Enter the ACS URL again into the ACS (Consumer) URL Validator field.
-
Click Save.
- Navigate to the Parameters tab in your OneLogin application.
- Add the three parameters detailed below.
Add the following parameters, ensuring the Include in SAML assertion box is checked for each:
Parameter Name | Value |
---|---|
FirstName | First Name |
LastName | Last Name |

To add each parameter:
-
Click the + button in the top-right corner of the parameters table.
-
Enter the parameter name (e.g., “Email”) and map it to the corresponding user attribute (Value field).
-
Check the Include in SAML assertion box.
-
Click Save.
-
Navigate to the Access tab in your OneLogin application
-
Configure user access by selecting appropriate roles or users
-
In this example, the Default role grants access to the application
-
Click Save
-
Navigate to the SSO tab in your OneLogin application.
-
Note the SAML 2.0 Endpoint (HTTP).
-
Note the Issuer URL.
-
Note or download the X.509 Certificate.
-
Send the SAML 2.0 Endpoint (HTTP) to Tallyfy Support.
-
Send the Issuer URL to Tallyfy Support.
-
Send the X.509 Certificate to Tallyfy Support.
-
Tallyfy Support will configure these values in your organization’s SAML settings.
After Tallyfy Support has configured your SAML settings:
-
Toggle the SAML activation switch to enable SSO for your organization
After completing the integration:
-
Obtain the Tallyfy login URL from the SAML configuration modal (provided by Tallyfy Support)
-
Share this URL with your users who have access to the OneLogin application
Users can now access Tallyfy through this URL:
- Existing Tallyfy users will be automatically authenticated
- New users will be provisioned in Tallyfy upon their first login
If users encounter authentication issues:
- Verify the user has been assigned to the OneLogin application
- Check that parameter mappings are correctly configured (exact names)
- Ensure the required attribute flags are enabled
- Confirm users are accessing Tallyfy through the SSO URL
- Contact Tallyfy Support for assistance with persistent issues
Authentication > Integrate Azure AD
Authentication > Integrate Google Suite
Integrations > Authentication and SSO
- 2025 Tallyfy, Inc.
- Privacy Policy
- Terms of Use
- Report Issue
- Trademarks