Sign in to the Admin Console, navigate to Settings > Identity > Directories, and select Create Directory.
-
Setup and onboarding
- Explore Adobe Admin Console
- Sign-in and access
-
Licensing
- Licensing overview
- Licensing types
-
Identity and SSO
- Set up identity
- Integrate with Microsoft Entra
- Integrate with Google Sync
- Integrate with other SSO providers
- Troubleshoot
-
Directories, domains, and access
-
Directories and domains
- Create a directory for SAML identity providers
- Verify domain ownership
- Set up domains for directory authentication
- Move domains across directories
- Encrypted and trusted directory domain transfers
- Move directories between Admin Consoles
- Delete directories and domains
- Automatic account creation overview
- Enable automatic account creation
- Automatic federated account creation FAQ
- Domain enforcement
- Directory trusting
-
Directories and domains
-
Settings
- Asset settings
- Manage encryption
-
User management
- Understand user management
- Manage users and groups
- Manage admins
- Manage user roles
- Migrate users
-
Products and entitlements
- Manage products
- Manage product profiles
- Special programs plans
- Manage entitlements
- Manage automatic assignment
- Manage product access
- Manage self-service policies
- Manage app integrations
- Frame.io integration
- Manage product permissions
- Manage storage and assets
-
Manage services
- Configure services
- Adobe Stock
- Custom fonts
- Adobe Asset Link
-
Deploy apps and updates
- Prepare for deployment
- Manage pre-generated packages
- Create packages
- Customize end-user experience
- Deploy packages
- Use third-party deployment tools
-
Manage Shared Device Licensing (SDL)
- Shared Device Licensing overview
- Deploy Shared Device Licensing
- Manage SDL profiles and user access
- Activate shared device licenses
- Use the Shared Device Licensing toolkit
- Recover shared device licenses
- Shared Device Licensing identity FAQ
- Shared Device Licensing deployment FAQ
- Shared Device Licensing access FAQ
- Known issues in Shared Device Licensing
- Adobe Update Server Setup Tool (AUSST)
- Adobe Remote Update Manager (RUM)
- Troubleshoot
- Contracts and renewals
- Reports and logs
-
Get started with Global Admin Console
- Get started
- Manage your organization
- Reports audit
-
Get help
- Support options
-
General troubleshooting
- Microsoft Purview Information Protection support in Acrobat
- Use the Creative Cloud Cleaner tool to fix installation issues
- Fix app launch errors on Shared Device Licensing machines
- Technical support boundaries for virtualized or server-based environments
- Resolve trial and license expired errors
- Migrating to OAuth Server-to-Server Credentials
- Manage device authentication for Creative Cloud and Acrobat Pro
Create a directory for SAML identity providers
Configure a federated directory with SAML-based identity providers to enable SSO authentication.
Creating a directory in the Adobe Admin Console establishes the foundation for user and license management in your organization. It holds users, domains, and authentication policies similar to LDAP or Active Directory structures.
This procedure applies to SAML providers, including Microsoft AD FS, Okta, Ping, Shibboleth, and similar identity systems.
Before you begin
Ensure you have:
- System Admin role in Adobe Admin Console
- Organization's identity provider (IdP) portal access
- SAML metadata download or configuration capability in your IdP system
Set up the directory and configure IdP integration
Enter a descriptive name for your directory, select Federated ID, and then select Next.
Select Other SAML Providers and then select Next.
On the Set up IdP screen, choose a method to exchange metadata with your identity provider.
- Method 1: Select Download Adobe Metadata file to save the XML file to your local system, then upload this file to your IdP's SAML configuration.
- Method 2: Copy the ACS URL and Entity ID values displayed on screen, then manually enter these into your IdP's SAML configuration fields.
Open your IdP app, finish the SAML setup using either the uploaded metadata file or the ACS URL and Entity ID, then download your IdP metadata file.
Return to the Adobe Admin Console, upload the IdP metadata file on the Set up IdP screen, and select Next.
Leave automatic account creation enabled unless your organization requires manual user provisioning. When enabled, users with verified email domains can automatically create federated accounts upon first sign-in.
Select a default country from the dropdown menu in the Attribute mappings section, optionally enable the setting to update user information in Admin Console when users sign in, and select Done.
Some identity providers, like Salesforce, require you to extract certificate information from the downloaded Adobe metadata file and enter it separately in the IdP software rather than uploading the complete file.
After creating your directory, verify domain ownership and add domains to the directory to enable user authentication. Learn more about identity setup and identity management in the Admin Console.