At Zoom, we are hard at work to provide you with the best 24x7 global support experience during this pandemic. As part of this ongoing commitment, please review our updated Support Guidelines.

Configuring Zoom with OneLogin Follow

Overview

You can connect Zoom with OneLogin to use your company's OneLogin credentials to login to your Zoom account via Single Sign-On (SSO). 

Prerequisites

  • Zoom owner or admin privileges
  • Business or Education account with approved Vanity URL
  • OneLogin Admin privileges

Note: Without an approved Associated Domain, users will need to confirm to being provisioned on the account through an email automatically sent to them. Provisioning will take place without email confirmation for any users falling under an approved domain.

Instructions

  1. Log in to OneLogin Admin account at https://app.onelogin.com/apps
  2. Click Add App.
  3. Search for "Zoom" in the provided search field and select the Zoom application.
  4. Edit your display name (if desired) and click Save.
  5. Once saved, open the configuration tab and enter your Vanity URL subdomain only, then Save. Example is from Vanity URL of https://lukehaselwood.zoom.us
  6. On the Configuration tab, under Zoom OAuth, click Authenticate.
  7. Sign in to the Zoom web portal.
  8. In the navigation panel, click Advanced, then Single Sign-On. 
    Also, navigate to the SSO tab for the Zoom application in OneLogin. The settings will need to be matched as follows:
    • OneLogin SAML 2.0 Endpoint (HTTP) > Zoom Sign-in page URL
      Important: the binding indicated in the URL needs to be changed to http-redirect.

      "https://app.onelogin.com/trust/saml2/http-post/sso/####"
      should be changed to:
      "https://app.onelogin.com/trust/saml2/http-redirect/sso/####"
    • OneLogin SLO Endpoint (HTTP) > Zoom Sign-out page URL
    • OneLogin Issuer URL > Zoom Issuer
    • For the Zoom Identity provider certificate, select View Details (shown above) under the OneLogin X.509 Certificate. Copy the text shown in the X.509 Certificate field between the Begin and End certificate and enter it in to the Zoom Identity provider certificate field
      ----BEGIN CERTIFICATE-----
      COPY THIS TEXT
      -----END CERTIFICATE-----
    • Select HTTP-Redirect as for the Zoom Binding
    • If you need to set up SAML Response Mapping, such as setting the default User Type, click the SAML Response Mapping tab.
  9. Click Save.
  10. You will also need to configure your users or groups in OneLogin to have access to the Zoom application.
  11. Visit your Vanity URL and press sign in. You should be redirected to the OneLogin access page. Sign in, and Zoom will create the account, pull first/last name if available, and log the user in.