Classlink SAML Configuration
Set up Single Sign-On (SSO) for your school system using Classlink.
Who can use this feature?
This feature is available to Canva Education. However, only team administrators and owners can enable, configure, and change their team or district’s SSO settings.
Step 1: Add Canva to Classlink
- From the Launchpad side menu, select Single Sign On > SAML Console.
- On the SAML Console page, select ADD NEW.
- On the SAML settings page, enter the following details.
- Name: Canva
- Metadata: Copy this metadata text
- Login URL: Leave this field blank
- Icon URL: https://filescdn.classlink.com/resources/icons/default/Canva.png
- Tick the Use custom certificate for signing? checkbox.
- In the Attribute Mapping section, set up the attributes as shown below.
- Save your settings.
Step 2: Copy setup details from Classlink
Go to the Classlink SAML settings page and copy the following details. You’ll need these to complete the setup in Canva
- IDP Single Sign On Service URL
- Identity Provider Issuer
- Signing Certificate
Step 3: Set up SAML SSO in Canva
- Log in to your Canva account.
- In the bottom-left corner, click your profile avatar, then select Settings.
- From the side menu, click the SSO and provisioning tab.
- Click Single sign-on (SSO) > Manage > Edit IdP metadata.
- Enter your identity provider’s details in the three fields:
- SSO or login URL: Paste your IDP Single Sign On Service URL.
- Entity ID or Issuer URL: Paste your Identity Provider Issuer
- X.509 Public Certificate: Paste all of the contents from your Signing Certificate.
6. Click Save and next.
Don’t make any changes to the Domain Verification section. We’ll take care of domain verification for your team.
Step 4: Configure Launchpad SAML
- Go to Launchpad.
- Select Management Console > Applications > Add.
- On the Edit Application page, enter the following details.
- Single Sign-On App: Toggle this to Yes
- Type: Select SAML
- Web Address: Paste your IDP Initiate Login URL. You can get this on your Classlink SAML settings page.
Step 5: Test your SSO login experience
There are two easy ways to test your SSO setup:
Option 1: Use the Test SSO button
If you're still on the Set up SSO page, scroll to the Test your SSO connection section and click Test SSO. If you're starting from the Canva homepage instead:
- In the left-hand panel of your homepage, click the gear icon to open Settings.
- From the side menu, click the SSO and provisioning tab.
- Go to Single sign-on (SSO) > Manage > Test SSO.
Option 2: Log out and back in using SSO
- Before logging out, go to the SSO and provisioning tab.
- Click Single sign-on (SSO) > Manage > Configure SSO settings.
- Set the login option to Optional for everyone.
- Log out of your Canva account.
- On the login page, click Continue with email, then select Log in with SSO.
Make sure to test using a student and teacher account. You’ve successfully configured SSO if:
- You logged in as a teacher and can see the People page.
- You logged in as a student and can’t see the People page.
Step 6: Set up login and signup controls
Choose how you want people to log in. We recommend requiring SSO for everyone in your domain.
- From the homepage, go to Settings > SSO and provisioning.
- Click Single sign-on (SSO) > Manage > Configure SSO settings.
- Select Required for everyone (domain capture).
- Click Save changes.
Step 7: Send your roster data to Canva (for multi-school districts only)
This step is only for Canva Education accounts with a multi-school setup.
For districts with a multi-school setup, you’ll need to transfer your roster data to Canva using OneRoster to help us identify which school a user should be assigned to.
If you’re having trouble setting up SSO, check our Troubleshooting SSO errors article.
Was this helpful?
Helpful
Unhelpful