Security Assertion Markup Language (SAML) integration has been implemented in our application to enhance user authentication and authorization. This article provides a step-by-step guide on how to configure and use SAML within your tenant.
1. Accessing SAML Settings
- Navigate to the "Settings" section on the dashboard
- Under “System settings“ you will find "Integrations," find the "Other" category and locate the "SAML" service
2. Enabling SAML
- Enable the SAML service to reveal the configuration form
3. Configure Azure AD as Identity Provider
- Log in to Azure AD Portal
- Select Azure Active Directory
- Select Enterprise Application
- Click on New Application
- Click on Create your own Application
- Enter the name for your app, then select Non-gallery application section and click on Create button
- Click on Setup Single sign-on
- Select the SAML tab
4. Collecting Data
- In the Azure Portal, under Single Sign-On, obtain the following data:
- Microsoft Enterprise Identifier
- Login URL
- Logout URL
Also Copy the Content of Certificate (Base 64)
4. Fill Configuration Form on Starling Dashboard
Fill out the form with the following details:
- Microsoft Enterprise Identifier
- Login URL
- Logout URL
- Certificate (Base 64)
5. Output Information
The dashboard will output the following information to be saved in the Azure Dashboard under the Basic SAML Configuration Section:
- Identifier (Entity ID)
- Reply URL (Assertion Consumer Service URL)
- Sign-on URL
- Logout URL
and save them on the Azure Portal Dashboard
Check with test sign on it will redirect to IPERA Admin Portal for Login (Successful Setup)
6. Login with SAML
Now you can use login with SAML to login to the dashboard
Write your e-mail to login to the dashboard
Important Note: Pre-requisites for SAML Login
Before attempting to log in with SAML, please ensure the following:
- Starling Dashboard User Existence
- Your email address, which you intend to use for SAML login, must be registered and exist under the Starling portal
You may create users under Management > Users
- Your email address, which you intend to use for SAML login, must be registered and exist under the Starling portal
- Azure AD User Existence
- Additionally, your email address needs to be a registered user in Azure Active Directory (Azure AD)
Only when both conditions are met will you be able to successfully log in using SAML authentication. If you encounter any issues or need assistance, please ensure your email is properly configured in both the Starling Tenant and Azure AD.
Comments
0 comments
Article is closed for comments.