ShipHero offers Security Assertion Markup Language (SAML) 2.0, allowing a single Identity Provider (IdP) to use those credentials across connected networks. The SAML protocol makes secure Single Sign-On (SSO) possible when working across different ShipHero programs.
If you are interested in configuring SAML SSO for your ShipHero account, please reach out to your CSM or our customer support team. They will partner with our technical engineers and provide you with the self-service sign-up form.
Implementing SSO on your ShipHero account is a paid service. Please contact your CSM for more information.
Using the Self-Service Form
The self-service form should be given to your IT admin to configure accordingly.
Important Note for 3PL Clients
This process must be completed separately for the ShipHero family of apps (App Dot, Shipping, Packing app, etc.) and the 3PL Portal app (ShipsForUs). If you use both, you will be provided two separate self-service links and will need to complete the process twice.
Step 1: Select Your Identity Provider
Select the Identity Provider (IdP) from the list of supported providers. In addition to those listed below, any provider that implements Generic OIDC or Generic SAML can be used.
| Supported Providers | |
|---|---|
| Okta | Keycloak |
| Entra ID (Microsoft) | Microsoft Active Directory Federation Services (ADFS) |
| Google Workspace | PingFederate |
Step 2: Create Application
Create a ShipHero application on your Identity Provider (IdP). The example pictured is for Okta, but works similarly in all IdPs.
Step 3: Configure Connection
Enter the IdP Domain, Client ID, and Client Secret from your IdP into the Configure Connection step on the self-service form, then click Create Connection.
Step 4: Claims Mapping
Map the users' emails in your IdP application for the login to work, then click Next.
Step 5: Assign Access
Assign users to the ShipHero application in your IdP, then click Next.
Step 6: Test SSO
Test your connection to confirm everything has been set up properly before enabling SSO. Once your test is complete, click Next to finish setup.
Congratulations! Your SSO connection is enabled and you can now use it to log in!