Connecting JumpCloud to Venn for Identity and User Management

In order to enable seamless user and permissions management in Venn, Venn offers integrations with third-party Identity Providers (IdPs), including JumpCloud.

If you configure JumpCloud as your Venn Identity Management solution, your users will be created, modified, and deleted in JumpCloud and synced to Venn. Additionally, users' Venn login information will be managed through JumpCloud.

Venn supports unidirectional syncing from JumpCloud to Venn, meaning that changes you make in JumpCloud will be reflected in Venn. Bidirectional syncing is not supported, meaning that changes you make to users in Venn will not update JumpCloud.

Learn how to connect Azure and Okta as third-party IdP solutions.

Set up JumpCloud As Your IdP

You must have Admin access to JumpCloud in order to set it up as your Venn IdP.

If you already have Identity Management configured in Venn, changing your identity provider will result in all users being locked out of Venn, including Company Managers. For that reason, changes should only be made in collaboration with the Venn team or a Venn partner.

To set up JumpCloud as your IdP:

  1. The Venn team or a Venn partner will change your Identity Provider to JumpCloud under Connected Apps > Identity Management in Company Admin.

    Company Admin_Identity Management_JumpCloud IDP.png

  2. Log in to JumpCloud Admin.

  3. In the menu at left, click SSO Applications under USER AUTHENTICATION.

    JumpCloud_Admin Menu_SSO Applications.png

  4. Click Add New Application.

    JumpCloud_Applications_Add New Application.png

  5. Click Select under Custom Application, then click Next.

    JumpCloud_Add New Application_Custom.png

  6. Check the box next to Manage Single Sign-On (SSO) and select Configure SSO with SAML. Then, click Next.

    JumpCloud_Configure SSO with SAML.png

  7. Set a Display Label and optional description for the Workplace app. Uncheck Show this application in User Portal and then click Save Application. JumpCloud_Add New Application_General Info_Don't Show.png
  8. On the confirmation screen, click Configure Application.
  9. You will be brought to the SSO tab of the Application Configuration page, update the following fields, and then click Save:
    • IdP Entity ID: https://jumpcloud.venn-dev.com/sso/jump-cloud
    • SP Entity ID: https://jumpcloud.os33dev.com/sso/jump-cloud
    • ACS URLs: https://jumpcloud.os33dev.com/sso/jump-cloud
    • Sign: click the radio button next to Assertion

    JumpCloud_Applications_SSO Configuration.png

  10. Click on the application name again and go back to the SSO tab. Click Export Metadata.

    JumpCloud_Export Metadata.png

  11. Copy and share the exported metadata with your Venn team. They will add that information to the JumpCloud federation settings in Venn's Company Admin.

    Comany Admin_Configure IdP_JumpCloud Metadata.png

  12. In JumpCloud Admin, go to the Identity Management tab of the Application Configuration page, update the following fields, and then click Save
    • Base URL: https://jumpcloud.venn.com/scim

    JumpCloud_Applications_Identity Management.png

  13. Copy the Token Key.

    JumpCloud_Copy Token Key.png

  14. Share the Token Key with your Venn team. They will add that information to the JumpCloud federation settings in Venn's Company Admin.
  15. Your Venn team will test, and then activate the connection in Venn's Company Admin.

Once these steps are complete, JumpCloud is set as your Venn Identity Management solution. Users will be able to access Venn if they are set up in JumpCloud and their Venn login information will be managed through JumpCloud.

Provision User Access to Venn in JumpCloud

Once JumpCloud is set up as your Venn Identity Management solution, user access to Venn will be managed in JumpCloud. You can grant access to Venn to users in JumpCloud by assigning the application to a user group.

To grant access to a group:

  1. In JumpCloud Admin, click User Groups under USER MANAGEMENT in the menu at left.

    JumpCloud_Admin Menu_User Groups.png

  2. Select a user group (for example, All Users).
  3. Go to the Applications tab, check the box next to Workplace, and click Save Group.

    JumpCloud_Groups_Assign Application.png

Real-time group provisioning is not supported by JumpCloud, meaning that when you assign Workplace to a group in JumpCloud, the users in that group will be added to Venn, but your user groups will not copy over from JumpCloud. If you would like to create and manage user groups in Venn in order to assign apps/websites or policies to a group of your users, you can do so in Company Admin.

See if a User Has Access to Venn in JumpCloud

To see if a user has access to Venn in JumpCloud:

  1. In JumpCloud Admin, click Users under USER MANAGEMENT in the menu at left.

    JumpCloud_Admin Menu_Users.png

  2. Select a user.
  3. Check to see if Workplace is listed under Applications.

    JumpCloud_User_Assigned Applications.png

Remove User Access from Venn in JumpCloud

You can remove access to Venn for a user group in JumpCloud.

To remove access for a group:

  1. In JumpCloud Admin, click User Groups under USER MANAGEMENT in the menu at left.

    JumpCloud_Admin Menu_User Groups.png

  2. Select a user group.
  3. Go to the Applications tab, uncheck the box next to Workplace, and click Save Group.

    JumpCloud_Groups_Unassign Application.png

If you remove a user from all groups that have the application assigned, they will no longer have access to Venn. Additionally, if you delete a user from JumpCloud when they leave your organization, they will also be deleted from Venn.

Was this article helpful?