---
title: "JumpCloud"
slug: "jumpcloud-identity-provider"
tags: ["Premium", "Enterprise"]
updated: 2026-04-07T09:05:21Z
published: 2026-04-07T09:05:21Z
canonical: "support.perimeter81.com/jumpcloud-identity-provider"
stale: true
---

> ## Documentation Index
> Fetch the complete documentation index at: https://support.perimeter81.com/llms.txt
> Use this file to discover all available pages before exploring further.

# JumpCloud

## Introduction

This article provides a detailed guide on how to configure JumpCloud as an identity provider.

By leveraging the Security Assertion Markup Language (SAML) protocol, Check Point SASE can authenticate users through JumpCloud, ensuring a secure and efficient login process.

## Steps

1. Open the **[JumpCloud Administrator Console](https://console.jumpcloud.com/)**.
2. Select **SSO** in the main navigation panel.  
![](https://cdn.document360.io/44667c0c-50d7-412a-acbd-20d4a41c952e/Images/Documentation/image-1678906877344.png)
3. Click **Add New Application** in the upper left.  
![](https://cdn.document360.io/44667c0c-50d7-412a-acbd-20d4a41c952e/Images/Documentation/image-1678906937204.png)
4. Search for "Check Point SASE" in the search bar at the bottom of the page, and click **Configure**.  
![](https://cdn.document360.io/44667c0c-50d7-412a-acbd-20d4a41c952e/Images/Documentation/image-1678906985835.png)
5. Choose a Display Label (Usually: Check Point SASE) and click the **SSO** tab.  
![](https://cdn.document360.io/44667c0c-50d7-412a-acbd-20d4a41c952e/Images/Documentation/image-1678907109366.png)
6. In the **Single Sign-On configuration** section, fill in the following information. Replace ***YOUR_WORKSPACE*** with your Check Point SASE workspace name (see attached example).  
![](https://cdn.document360.io/44667c0c-50d7-412a-acbd-20d4a41c952e/Images/Documentation/image-1678911484150.png)
  - **IDP Entity ID****:**
    - US based platform - *https://YOUR_WORKSPACE.perimeter81.com/*
    - **EU based platform - [https://YOUR_WORKSPACE.eu.sase.checkpoint.com/](https://YOUR_WORKSPACE.eu.sase.checkpoint.com/)**
    - **AU based platform - [https://YOUR_WORKSPACE.au.sase.checkpoint.com/](https://YOUR_WORKSPACE.au.sase.checkpoint.com/)**
    - **IN based platform -**[**https://YOUR_WORKSPACE.in.sase.checkpoint.com/**](https://YOUR_WORKSPACE.in.sase.checkpoint.com/)
  - **SP Entity ID****:**
    - *US based platform - urn:auth0:perimeter81:YOUR_WORKSPACE-oc*
    - ***EU based platform - urn:auth0:eu-sase-checkpoint:YOUR_WORKSPACE-oc***
    - ***AU based platform - urn:auth0:au-sase-checkpoint:YOUR_WORKSPACE-oc***
    - ***IN based platform - urn:auth0:in-sase-checkpoint:YOUR_WORKSPACE-oc***
  - **ACS URL****:**
    - *US based platform - [https://auth.perimeter81.com/login/callback?connection=YOUR_WORKSPACE-oc](https://auth.perimeter81.com/login/callback?connection=YOUR_WORKSPACE-oc)*
    - ***EU based platform - [https://auth.eu.sase.checkpoint.com/login/callback?connection=YOUR_WORKSPACE-oc](https://auth.perimeter81.com/login/callback?connection=YOUR_WORKSPACE-oc)***
    - ***AU based platform - [https://auth.eu.sase.checkpoint.com/login/callback?connection=YOUR_WORKSPACE-oc](https://auth.au.sase.checkpoint.com/login/callback?connection=YOUR_WORKSPACE-oc)***
    - ***EU based platform - [https://auth.in.sase.checkpoint.com/login/callback?connection=YOUR_WORKSPACE-oc](https://auth.in.sase.checkpoint.com/login/callback?connection=YOUR_WORKSPACE-oc)***
  - **IDP URL:**You can leave it as is. This value will be used later when configuring the identity provider on the Check Point SASE side.

1. Make sure to leave the rest of the fields with the default values:  
![360010732619ScreenShot2020-04-05at173838.png](https://cdn.document360.io/44667c0c-50d7-412a-acbd-20d4a41c952e/Images/Documentation/360010732619ScreenShot2020-04-05at173838.png)
2. Under **User Groups**, verify that you are giving permissions to only the groups you want.  
![](https://cdn.document360.io/44667c0c-50d7-412a-acbd-20d4a41c952e/Images/Documentation/image-1678912117858.png)
3. Click**Activate.**  
![](https://cdn.document360.io/44667c0c-50d7-412a-acbd-20d4a41c952e/Images/Documentation/image-1678912149470.png)
4. **Click the newly created Application**  
![](https://cdn.document360.io/44667c0c-50d7-412a-acbd-20d4a41c952e/Images/Documentation/image-1678912214372.png)10. Click the drop-down menu next to **IDP****Certificate Valid,**then download the certificate**. ![360010720940ScreenShot2020-04-05at174453.png](https://cdn.document360.io/44667c0c-50d7-412a-acbd-20d4a41c952e/Images/Documentation/360010720940ScreenShot2020-04-05at174453.png)**

## **Configuring JumpCloud in the Management Platform**

Now, you will configure the integration from the Check Point SASE side.

1. Log in to your Check Point SASE Management Platform, navigate to **Settings,** and then **Identity Providers**.  
**![360008600859addprovider1.png](https://cdn.document360.io/44667c0c-50d7-412a-acbd-20d4a41c952e/Images/Documentation/360008600859addprovider1.png)**
2. Select **+ Add Provider.**
3. Choose **SAML 2.0 Identity Providers.**
4. **Sign-In URL:**Usually, this will be****[https://sso.jumpcloud.com/saml2/perimeter81](https://sso.jumpcloud.com/saml2/perimeter81), unless you selected another **IDP URL** in the previous section of the guide.
5. Add your organization domain.
6. Paste or upload the certificate from JumpCloud.  
![](https://cdn.document360.io/44667c0c-50d7-412a-acbd-20d4a41c952e/Images/Documentation/image-1678906098515.png)
7. Select Done.

<meta charset="utf-8">

## Recommendations

- Always replace placeholders like YOUR_WORKSPACE with the appropriate values during the setup.
- Ensure that the correct attributes and URLs are set in JumpCloud for accurate user authentication and authorization in Check Point SASE.
- Periodically review your JumpCloud configuration settings to ensure they align with any updates or changes made within the Check Point SASE platform

## Troubleshooting

If you encounter issues during or after the setup, try reviewing your settings to ensure everything matches the instructions. In particular, check the IP addresses and other details you entered during setup. If issues persist, please consult our dedicated support.

## Support Contacts

If you have any difficulties or questions, don't hesitate to contact Check Point SASE's support team. We offer 24/7 chat support on our website at [sase.checkpoint.com](https://sase.checkpoint.com/), or you can email us at sase-support@checkpoint.com. We're here to assist you and ensure your VPN tunnel setup is a success

## [](https://support.perimeter81.com/docs/360025958673)**[](https://support.perimeter81.com/docs/360025958673)**
