Integrate HiBob with Conditional Access

In this topic, you will find general instructions on how to integrate HiBob with Portnox™ Conditional Access for Applications.

Create a Portnox Cloud application configuration

In this step, you will create a configuration in Portnox Cloud that will contain all the information necessary to integrate with HiBob.

  1. In a new tab of your browser, open your Portnox Cloud account by accessing the following URL: https://clear.portnox.com/

    From now on, we will call this tab the Portnox tab.

  2. In the Cloud portal top menu, click on the Applications option.

  3. On the Applications screen, click on the Add application button, and select the Add new SAML application option.

  4. Optional: If you have more than one SAML identity provider configured, select the identity provider in the Select an identity provider to use for this application section.
  5. In the Application details section, enter an Application name and optionally a Description.

    In this example, we used the name HiBob for the new application configuration but you can use any name you like.

  6. Keep this browser tab open. You will need it later.

Open your HiBob custom SAML settings

In this section, you will access your HiBob company settings and find the custom SAML 2.0 settings.

  1. In another tab of your browser, open HiBob by accessing the following URL: https://app.hibob.com/ and logging in.

    From now on, we will call this tab the HiBob tab.

  2. In the left-hand side menu, on the very bottom, click on the Settings option.

  3. In the Settings pane left-hand side menu, click on the Integrations option.

  4. In the Integrations pane, type SSO in the Search box and select the SSO option to limit the results to SSO integrations.

  5. Find the CUSTOM SAML 2.0 tile, and click on the Connect link.

Export metadata from the Portnox tab and upload it in the HiBob tab

In this section, you will export the metadata from Portnox Cloud into a file and upload that file in the HiBob custom SAML setup section.

  1. In the Portnox tab, in the SAML metadata section, click on the Download metadata XML file link to download the XML file and save it to your local drive.

  2. In the HiBob tab, in the Third-party application metadata, select the Metadata file option, and then upload the XML file downloaded from Portnox Cloud.

Copy configuration values from the HiBob tab to the Portnox tab

In this section, you will copy the values displayed in your HiBob SSO setup section, and paste them in the relevant fields in Portnox Cloud.

  1. In the HiBob tab, click on the  ⧉  icon next to the Service Provider (SP) entity ID field to copy the value to the clipboard.

  2. In the Portnox tab, in the Application properties section, click on the empty field under the Entity ID / Service Provider Entity URL heading and paste the value copied from HiBob.

  3. In the HiBob tab, click on the  ⧉  icon next to the ACS URL field to copy the value to the clipboard.

  4. In the Portnox tab, in the Application properties section, click on the empty field under the Assertion Consumer Service (ACS) URL / Reply URL heading and paste the value copied from HiBob.

Finalize the configuration

In this section, you will finalize the configuration in Portnox Cloud and HiBob.

  1. Finalize the configuration in the Portnox tab.
    1. Optional: In the POLICY ASSIGNMENTS section, change the setting to Application-based and then select an access control policy and a risk assessment policy if you want to control access to this application without using groups.
    2. Scroll all the way down to the end of the page, and then click on the Save button.

  2. Finalize the configuration in the HiBob tab.
    1. In the Who to include? section, configure the rules for providing this integration to users.

      Note: We recommend to first make the integration available only to a small number of users and test if it works correctly. Only then, we recommend to include all employees in the organization.
    2. Click on the Save button in the top-right corner of the Connection details pane.

Result: You have configured HiBob to be accessible using Portnox Conditional Access for Applications.