Skip Navigation

Ping Identity setup

1 min read

Create a Workforce environment

  1. Click the Ping Identity logo in the top-left corner to go to the Environments page.
An image showing the Environments page in PingOne
  1. Click + Create Environment.
  2. Select Workforce as the solution type.
  3. Choose an environment type. Select Sandbox for testing, or Production for your live environment.
  4. Name your environment, select your region and click Next to create it.
An image showing the Create Environment wizard in PingOne
  1. Open the new environment. In the left sidebar, confirm Applications and Integrations > Provisioning appear in the sidebar.

Create a SAML application in PingOne

  1. Make sure you’re in your Workforce environment — check the breadcrumb at the top of the page.
  2. Go to Applications > Applications in the left sidebar.
  3. Click the + button to add a new application.
  4. Enter an Application Name — for example, Sketch Enterprise — and an optional description.
  5. Select SAML Application as the application type.
  6. Click Configure.
An image showing the new SAML application form in PingOne

Configure SAML settings

  1. Select the Manually enter option.
  2. Paste the values you copied when setting up SAML SSO in your Workspace:
    • ACS URLs: your ACS URL from Sketch
    • Entity ID: your Entity ID from Sketch
  3. Click Save.
  4. Scroll down and click Download Metadata to save the XML file. You’ll need this to complete setup in Sketch.
An image showing the Download Metadata button in PingOne

Configure attribute mappings

  1. In the Applications list, click your Sketch application to open it.
  2. Go to the Attribute Mappings tab.
  3. Add the following mappings, then click Save:
Attribute PingOne mapping
email Email Address
first_name Given Name
surname Family Name
An image showing the attribute mappings for the Sketch SAML app in PingOne

Set NameID format

  1. Go to the Configuration tab.
  2. Set NameID Format to Email Address and click Save.
An image showing the NameID Format setting in PingOne

Enable the application

  1. At the top of the application panel, toggle the application on. Enable it before users can sign in.

Now head to How to finish setting up SAML SSO in your Workspace and upload the PingOne metadata XML file you downloaded earlier.

If you want to automate user provisioning, follow the Ping Identity SCIM setup guide once SSO is working.