■
Table of Contents
-
Create a SAML App from the Entra ID Portal
-
Configure Simpplr with Entra ID
-
Configure Entra ID SSO with Simpplr Information
Note:
You must be the Microsoft Admin user to complete these steps.Note that Azure has recently renamed to Microsoft Entra ID. Check out this article for more info.
Create a SAML App from the Entra ID Portal:
-
In the Entra ID portal, on the left navigation panel, select Microsoft Entra ID.
-
Navigate to Enterprise applications. Then make sure you're in All applications.
-
Click New application button on the top of the menu.
Click Create your own application. Name it anything you'd like, as long as you remember it. We recommend going with 'Simpplr Intranet' or something simple. Select the option Integrate any other application you didn't find in the gallery (Non-gallery). Then click Create. This should take about 15-20 seconds to save.
Note:
You can change the name of the app later on in the Priorities menu.
Copy the Login URL and Microsoft Entra Identifier, and download the Base64 Certificate. Paste these items somewhere you can access later on. You'll need them when connecting the app to Simpplr. Click Continue.
Configure Your Intranet with Entra ID
- Open a new tab in your browser and log in to your Simpplr tenant as the Application manager.
-
Go to Manage > Application > Security > External IdP (SSO).
-
Click Add > Microsoft.
-
Input each value with the applicable details:
- Name: This is the display name for the SSO integration, visible on the page. Choose a clear and descriptive name that distinguishes it from other SSO options
- Sign in text: This text displays on the login page. You can provide any custom text
- Login URL: Enter the login URL retrieved from the Entra ID portal
- Identity Provider (IdP) entity ID: Enter the Microsoft Entra Identifier received from Microsoft Entra ID portal (Step 5)
- Certificate: Upload PEM file downloaded from Entra ID portal under certificates.
- Select a login identifier: Select at least one login identifier that users will use to log into Simpplr application. Choose any of the available identifiers supported by Microsoft Entra ID
- Enable SSO provisioning - if you want users to be provisioned via Microsoft Entra ID. This is an optional step.
- When finished, click Save.
- This will provide you with the applicable details needed to input back in Entra ID to complete the integration.
Configure Entra ID SSO with Simpplr Information
- Back in your Entra ID instance, from your newly created app, select option 2, Set up single sign on.
- Click the SAML option.
- In Basic SAML Configuration, click Edit.
-
From the next screen:
- Enter the Reply URL - Copy the ‘ACS URL’ received from configuration details in Simpplr and paste it in the Reply URL field in Microsoft Entra ID SAML app
- Enter the Identifier (Entity ID) - Copy the ‘Service Provider entity ID’ received from Simpplr and paste it in the Identifier (Entity ID) field in Microsoft Entra ID SAML app
- Optionally, enter the Relay state - Copy the ‘Relay state’ received from configuration details in Simpplr and paste it in the Relay state field in Microsoft Entra ID SAML app
- When finished, click Save. The completed inputs should look similar to the image below.
- Navigate back to the Single Sign-On page. You should see your settings you just added. If you don't, refresh the page.
- From the Attributes & Claims section, click Edit.
-
Configure the following attributes as per the table below. Be sure to remove the text that's in the Namespace fields for each attribute.
first_name
user.givenname
last_name
user.surname
email
user.mail
username
user.mail
- Once you have your attributes and claims configured, click Save at the top.
- Leave all other claims as is.
Comments
Please sign in to leave a comment.