Azure IDP-Initiated SSO
Overview
This guide provides instructions for configuring Azure Single Sign-On (SSO) with Cloudsaver through IDP-initiated authentication.
Initial Setup in Azure
- Navigate to Azure Portal and search for Enterprise applications
- Click New application on the Enterprise applications page
- Select Create your own application, enter "CloudSaver" as the app name
- Choose Integrate any other application you don't find in the gallery (Non-gallery) and click Create
Configure Single Sign-On
- Select Single Sign-on from the left menu
- Choose the SAML tile as the authentication method
Exchange Configuration Details
- In Cloudsaver, navigate to Settings > Single Sign-On and click Set Up SSO
- Copy the Entity ID from Cloudsaver
- In Azure, under Basic SAML Configuration, click Edit and paste the Entity ID in the Identifier field
- Copy the Single Sign-On URL from Cloudsaver and paste it as the Reply URL in Azure
Configure User Attributes
- In Azure, under Attributes & Claims, click Edit
- Add new claims for:
- email— user.mail
- given_name— user.givenname
- family_name— user.surname
Complete Certificate Exchange
- Download the Certificate (base64) from Azure's SAML Certificates section
- Upload the certificate to Cloudsaver's X509 Signing Certificate field
- Copy the Login URLfrom Azure's "Set up CloudSaver" section
- Paste the Login URL into Cloudsaver's Sign-in URL field and submit
Verification
Confirm that Cloudsaver displays SSO is configured in the SSO Status field.
Want to see how this applies to your environment?
Get your free savings assessment