Establishing a single sign-on connection from your IDP (identity provider) is an easier and more secure method to access Performance Pro.
There are multiple reasons why establishing a single sign-on connection to Performance Pro is advantageous. By using a SSO connection, employees no longer enter their username and password credentials to log in. For HR, Performance Pro admins will respond to fewer requests for credentials, reset passwords, etc.
HR Performance Solutions provides a solution to allow employees users to get to Performance Pro from your HRIS or intranet. As a summary of the SSO operation, when we establish a connection with your IDP, such as with Azure or ADFS, to ensure a successful connection to Performance Pro, you'll pass SAML assertions such as username, email address or employee ID attributes to match how you identify your employees. Performance Pro uses an API to retrieve the user attributes in that SAML Assertion to make a successful connection.
If there is a mis-match in how the employee is identified at the client side compared to how the employee is listed in Performance Pro, the SSO connection will not be successful.
Here are next steps for your IT team to follow:
- HR Performance Solutions will provide our ACS and Entity ID
- Next, you will to provide us with your SAML metadata
- Next, once we set up the connection for Performance Pro, we'll provide you with our metadata file and SSO URL for you to complete your configuration
- You can add that SSO URL to your intranet page or as a link in your payroll application.
- Once your configuration is complete and tested, you can distribute the URL to your employees.
We're happy to hop on a call with you to walk through this setup and answer any questions you have. To get started or to gather more information, please contact our Performance Pro Client Experience team.