update sso docs -- users have to exist in fleet before saml assertion is valid (#4078)

This commit is contained in:
Benjamin Edwards 2022-02-07 21:51:28 -05:00 committed by GitHub
parent cb4171aa84
commit 4ecb61e61c
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -1989,6 +1989,8 @@ Fleet supports both SP-initiated SAML login and IDP-initiated login, however IDP
Fleet supports the SAML Web Browser SSO Profile using the HTTP Redirect Binding.
_**Note that the email being used in the SAML Assertion must match a user that already exists in Fleet.**_
### Identity Provider (IDP) Configuration
Setting up the service provider (Fleet) with an identity provider generally requires the following information: