Configuring Workfront Proof Single Sign-On

If you are a Workfront Proof administrator, you can configure Single Sign-On on the Workfront Proof side. For more information, see Single Sign-On in Workfront Proof.

  1. Click Settings > Account Settings, then open the Single sign-on tab.

  2. In the SSO URL box, paste your Entity ID.
    The following is an example of an Entity ID:
    Your Entity ID can be found in your Federation Metadata XML file.

  3. Federation Metadata is found in the AD FS 2.0 snap-in > Service > Endpoints folder. In the Metadata section, locate the one with the Federation Metadata type. To view metadata, paste this endpoint in your browser. You can also go to this link directly: https://<>/FederationMetadata/2007-06/FederationMetadata.xml after replacing the {} with your own details.

  4. In the Login URL box, paste your SSO login.

  5. The following is an example of an SSO login:

  6. http://<>/adfs/ls.

  7. This link can be located in the Federation Metadata XML file.

  8. In the Logout URL box, enter the link and save.
    The following is an example of a Logout URL:

    1. Go to your AD FS manager > Trust Relationships > Relying Party Trusts - ProofHQ properties.

    2. Under the Endpoints, click Add and entry with the following details:

      • Endpoint Type = SAML Logout
      • Binding = POST
      • URL = https://<>/adfs/ls/?wa=wsignout1.0
      • This step can be completed after configuring the Relying Party Trust (see below) in your AD FS.
    3. In the Certificate fingerprint box, enter the data from your certificate.

    4. Go to your ADFS 2.0 snap-in navigate to Service > Certificates > Token-signing.

    5. Right-click on this entry to view the certificate.

    6. From the Certificate Details tab copy the Thumbprint, and paste it in the Workfront Proof Single Sign-On configuration tab.

    7. The fingerprint characters can be separated with colons or spaces, but we do recommend removing these. If you have any troubles with your Single Sign-On configuration, please contact the Customer Support team.

Adding a Relying Party Trust

Once configuration is complete, you need to work in the Relying Party Trusts section in your AD FS.

  1. Navigate to Trust Relationships > Relying Party Trusts folder, then click Add a Relying Party Trust to start the configuration wizard.

  2. Select your data source.
    All metadata for your ProofHQ account is located under a link like this:
    This will configures most of the Relying Party Trust.

    • If you’re having any troubles with establishing the connection from the URL, save the metadata as a file and choose to import data from a file.
    • When you have a full Custom domain (e.g., configured on your ProofHQ account replace the whole “{yoursubdomain}” part with your own domain to create your ProofHQ metadata link.

Configuring Claim Rules

Once your Relying Party Trust configuration is complete, you are ready to configure the claim rules to complete the set up. You will configure two claim rules for ProofHQ: E-mail and Name ID.

  1. Open the Edit Claim Rules dialog box.

  2. Go to ProofHQ Relying Party Trust, then click Edit Claim Rules (1).
    The pop-up should automatically open if you selected this option at the end of configuring the trust.

  3. Click Add Rule (2) to open the claim configuration window.

    • E-mail (Send LDAP Attributes as Claims rule template)
    • NameID (Transform an Incoming Claim rule template)
Previous pageConfigure Single Sign-On for Workfront Proof users
Next pageProof Permissions Profiles in Workfront Proof


Learn: Automating Workflows with Workfront Fusion - Unique Use Cases in Action


Tuesday, Mar 4, 6:00 PM UTC

Looking for creative ways to use Workfront Fusion to solve business challenges? Join Pan Shahbazian of Starbucks as she shares three unique use cases that can transform your workflows.


The Perfect Blend: A New Era of Collaboration with AEM and Workfront

Adobe Customer Success Webinars

Wednesday, Apr 2, 5:00 PM UTC

Explore how Adobe Experience Manager and Workfront integrate to help teams move from ideation to delivery without the usual bottlenecks, ensuring content is organized, on-brand, and ready to go live faster.


The Future of Adobe Workfront

Online | Session | General Audience

Join Adobe Workfront product leaders to get a sneak peek of the future of strategic planning and workflow in what is the most attended...

Tue, Mar 18, 3:30 PM PDT (10:30 PM UTC)


Driving Marketing Agility and Scale: Transforming your Content Supply Chain with AI

Online | Strategy Keynote | General Audience

Marketers everywhere are feeling the pressure to deliver impactful campaigns faster and at greater scale. This Strategy Keynote explores...

Tue, Mar 18, 2:30 PM PDT (9:30 PM UTC)


Connect with Experience League at Summit!

Get front-row access to top sessions, hands-on activities, and networking—wherever you are!

Learn more

Register to learn something new


Join Adobe product experts in live events where you will learn Adobe Workfront best practices, tips and tricks, and hear about the latest product features and updates.
