{"id":7726,"date":"2021-02-19T10:55:02","date_gmt":"2021-02-19T10:55:02","guid":{"rendered":"https:\/\/guide.itscope.com\/?post_type=kb&#038;p=7726"},"modified":"2022-06-30T14:26:21","modified_gmt":"2022-06-30T12:26:21","slug":"azure-active-directory","status":"publish","type":"kb","link":"https:\/\/guide.itscope.com\/en\/kb\/azure-active-directory\/","title":{"rendered":"Azure Active Directory"},"content":{"rendered":"\n<p>If you would like to use Single Sign-On (SSO) for portals in conjunction with Azure Active Directory (AD), please contact your ITscope representative.<\/p>\n\n\n\n<p>The following documentation describes how to create and set up an enterprise application in Azure AD to enable SSO access to a B2B Suite portal.<br><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Create enterprise application<\/h2>\n\n\n\n<p>Navigate to the overview page of all enterprise applications in Azure AD. Alternatively, you can also use the following link: <a href=\"https:\/\/aad.portal.azure.com\/#blade\/Microsoft_AAD_IAM\/StartboardApplicationsMenuBlade\/AllApps\/menuId\/\">https:\/\/aad.portal.azure.com\/#blade\/Microsoft_AAD_IAM\/StartboardApplicationsMenuBlade\/AllApps\/menuId\/<\/a><\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"907\" height=\"123\" src=\"https:\/\/guide.itscope.com\/wp-content\/uploads\/2021\/01\/Overview-1.png\" alt=\"\" class=\"wp-image-7311\" srcset=\"https:\/\/guide.itscope.com\/wp-content\/uploads\/2021\/01\/Overview-1.png 907w, https:\/\/guide.itscope.com\/wp-content\/uploads\/2021\/01\/Overview-1-300x41.png 300w, https:\/\/guide.itscope.com\/wp-content\/uploads\/2021\/01\/Overview-1-768x104.png 768w\" sizes=\"auto, (max-width: 907px) 100vw, 907px\" \/><figcaption> <\/figcaption><\/figure>\n\n\n\n<p>Select &#8216;Create new application&#8217; and in the following step select &#8216;Create own application&#8217; in the upper menu. In the new panel that opens on the right, define a name for the new application and select &#8216;Integrate any other application not found in the catalogue&#8217; as the purpose. The application can then be created via the &#8216;Create&#8217; button at the bottom.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"577\" height=\"261\" src=\"https:\/\/guide.itscope.com\/wp-content\/uploads\/2021\/01\/select.png\" alt=\"\" class=\"wp-image-7315\" srcset=\"https:\/\/guide.itscope.com\/wp-content\/uploads\/2021\/01\/select.png 577w, https:\/\/guide.itscope.com\/wp-content\/uploads\/2021\/01\/select-300x136.png 300w\" sizes=\"auto, (max-width: 577px) 100vw, 577px\" \/><figcaption> <\/figcaption><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\">Configure enterprise application for SAML SSO<\/h2>\n\n\n\n<p>Open the page of the enterprise application you just created and select &#8216;Single Sign-On&#8217; in the left sidebar and select &#8216;SAML&#8217; as the SSO method.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1000\" height=\"545\" src=\"https:\/\/guide.itscope.com\/wp-content\/uploads\/2021\/01\/detail.png\" alt=\"\" class=\"wp-image-7318\" srcset=\"https:\/\/guide.itscope.com\/wp-content\/uploads\/2021\/01\/detail.png 1000w, https:\/\/guide.itscope.com\/wp-content\/uploads\/2021\/01\/detail-300x164.png 300w, https:\/\/guide.itscope.com\/wp-content\/uploads\/2021\/01\/detail-768x419.png 768w\" sizes=\"auto, (max-width: 1000px) 100vw, 1000px\" \/><figcaption> <\/figcaption><\/figure>\n\n\n\n<p>The SSO login must then be set up with SAML in the overview that can now be seen.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"744\" height=\"1024\" src=\"https:\/\/guide.itscope.com\/wp-content\/uploads\/2021\/01\/configure-1-744x1024.png\" alt=\"\" class=\"wp-image-7328\" srcset=\"https:\/\/guide.itscope.com\/wp-content\/uploads\/2021\/01\/configure-1-744x1024.png 744w, https:\/\/guide.itscope.com\/wp-content\/uploads\/2021\/01\/configure-1-218x300.png 218w, https:\/\/guide.itscope.com\/wp-content\/uploads\/2021\/01\/configure-1-768x1056.png 768w, https:\/\/guide.itscope.com\/wp-content\/uploads\/2021\/01\/configure-1.png 780w\" sizes=\"auto, (max-width: 744px) 100vw, 744px\" \/><figcaption> <\/figcaption><\/figure>\n\n\n\n<p>Under point <strong>(1)<\/strong> &#8216;Basic SAML Configuration&#8217;, click &#8216;Edit&#8217; and enter the following URL: &#8216;https:\/\/&lt;portal-domain>\/saml\/metadata&#8217; for &#8216;Identifier (Entity ID)&#8217;. Then enter the following URL: &#8216;https:\/\/&lt;portal-domain>\/red\/samlacs&#8217; for &#8216;Response URL (Assertion Consumer Service URL)&#8217;. Save this configuration.<\/p>\n\n\n\n<p>Under point <strong>(3)<\/strong> &#8216;SAML signature certificate&#8217;, click &#8216;Edit&#8217; and select &#8216;Sign SAML response and assertion&#8217; as the &#8216;Signature option&#8217; and then save this change.<\/p>\n\n\n\n<p>Now you need to copy or download the following details and send them to your ITscope contact person:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Point <strong>(3)<\/strong> &#8216;SAML signature certificate&#8217;<ul><li>Fingerprint<\/li><li>App Composite Metadata URL<\/li><li>Certificate (Base64)<\/li><\/ul><\/li><li>Point <strong>(4)<\/strong> &#8216;Set up B2B Suite Portal&#8217;<ul><li>URL for registration<\/li><li>Azure AD identifier<\/li><li>Logout URL<\/li><\/ul><\/li><\/ul>\n\n\n\n<p>As soon as these details are available to ITscope, the set-up will be initiated and after receiving feedback from the contact person, the integration can be tested under point <strong>(5)<\/strong>.<\/p>\n\n\n\n<p>To initiate the SSO login, the following URL has to be accessed: https:\/\/&lt;portal-domain>\/saml\/login<\/p>\n","protected":false},"excerpt":{"rendered":"<p>If you would like to use Single Sign-On (SSO) for portals in conjunction with Azure Active Directory (AD), please contact your ITscope representative. The following documentation describes how to create &#8230;<\/p>\n","protected":false},"author":5,"featured_media":0,"comment_status":"open","ping_status":"closed","template":"","meta":{"footnotes":""},"kbtopic":[190],"kbtag":[],"class_list":["post-7726","kb","type-kb","status-publish","hentry","kbtopic-set-up"],"_links":{"self":[{"href":"https:\/\/guide.itscope.com\/en\/wp-json\/wp\/v2\/kb\/7726","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/guide.itscope.com\/en\/wp-json\/wp\/v2\/kb"}],"about":[{"href":"https:\/\/guide.itscope.com\/en\/wp-json\/wp\/v2\/types\/kb"}],"author":[{"embeddable":true,"href":"https:\/\/guide.itscope.com\/en\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/guide.itscope.com\/en\/wp-json\/wp\/v2\/comments?post=7726"}],"version-history":[{"count":3,"href":"https:\/\/guide.itscope.com\/en\/wp-json\/wp\/v2\/kb\/7726\/revisions"}],"predecessor-version":[{"id":13058,"href":"https:\/\/guide.itscope.com\/en\/wp-json\/wp\/v2\/kb\/7726\/revisions\/13058"}],"wp:attachment":[{"href":"https:\/\/guide.itscope.com\/en\/wp-json\/wp\/v2\/media?parent=7726"}],"wp:term":[{"taxonomy":"kbtopic","embeddable":true,"href":"https:\/\/guide.itscope.com\/en\/wp-json\/wp\/v2\/kbtopic?post=7726"},{"taxonomy":"kbtag","embeddable":true,"href":"https:\/\/guide.itscope.com\/en\/wp-json\/wp\/v2\/kbtag?post=7726"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}