Skip to content
English
  • There are no suggestions because the search field is empty.

E3 - How to configure an Account SSO (Azure)

E3 - How to configure an Account SSO (Azure)

Azure Panel

  1. Login to your Azure account
  2. Open the Microsoft Entra ID service
  3. In the left sidebar, click on Enterprise application
  4. Click on Create a New application
  5. Then Create your own application
  6. Fill the What's the name of your app?
    (suggest using E3 APP)
  7. In the What are you looking to do with your application?, select the last one Integrate any other application you don't find in the gallery (Non-gallery)
  8. In the left sidebar, click on Single sign-on
  9. Then click on SAML
  10. Click on Edit in the Basic SAML Configuration card
  11. In the Identifier (Entity ID), use your domain + your app name
    (example: https://yourdomain.com/e3-app)
  12. Reply URL (Assertion Consumer Service URL) put: https://admin.e3.software/api/auth/sso/login
  13. Click on Save and close the modal
  14. Click on Edit in the Attributes & Claims card
  15. Delete all existing Additional claims (clicking on the “…” at the end of each table row)
  16. Add new claims

Name

Namespace

Source

Source Attribute

email

Leave empty

Attribute

user.userprincipalname

enabled

Leave empty

Attribute

user.accountenabled

firstname

Leave empty

Attribute

user.givenname

lastname

Leave empty

Attribute

user.surname

fullname

Leave empty

Attribute

user.displayname

phone

Leave empty

Attribute

user.mobilephone

 

Go back to the Single Sign-On page (don't close this page opened, we will need to copy some data in the next steps)


E3 Admin

  1. Go to Accounts
  2. Create or edit your if already have one
  3. Go to the Integration(s) tab
  4. Click on the Settings in the Single Sign-On (SSO) card
  5. Active Enable and Show toggles

    Screenshot 2024-07-01 at 1.42.40 PM
  6. In the Single Sign-On page, Basic SAML Configuration card
    • Copy the Identifier (Entity ID)
    • Past in the Account -> SAML Issuer
  7. In the Single Sign-On page, SAML Certificates card, Download the Certificate (Base64)
    • Edit the file and copy the content (should start with -----BEGIN CERTIFICATE-----)
    • Past the content in the Account -> SAML Verification Certificate
  8. In the Single Sign-On page, Set up E3 APP card
    • Copy the Login URL
    • Past in the Account -> SAML Login URL
  9. In the Single Sign-On page, search in the sidebar and open the Overview
    • Copy the Application ID
    • Past in the Account -> SAML Application ID
  10. In the Account page, click on Save



Note: Active users will sync at midnight to their associated group(s).
Users that are manually added to groups will maintain those changes, the sync will not override manual additions/invitations.

Deactivated users will be removed from ALL groups, including manually added groups.


 

Need more help?

💬 Chat with us.

Click the chat icon in the bottom-right corner of this page to connect with our team instantly.

✉️ Email us.

You can also send us an email at help@emergent3.com.