Article No: 30237585708439
This article provides step-by-step instructions for configuring Single Sign-On (SSO) with SAML using Microsoft Entra ID for Veriato.
Enterprise Application Setup in Microsoft Entra ID
Step 1: Access Microsoft Entra Admin Center
- Open the Microsoft Entra Admin Center.
- Authenticate using an Azure Administrator account (Admin privileges required).
Step 2: Register a New Enterprise Application
- Navigate to Identity > Applications > Enterprise Applications.
- Click "New Application".
- Select "Create your own application".
- Enter a unique application name.
- Ensure "Integrate any other application you don’t find in the gallery (Non-gallery)" is selected.
- Click "Create".
Upon creation, you will be redirected to the Application Overview Page.
Configuring SAML-Based Single Sign-On
Step 1: Initiate SAML Configuration
- In the Enterprise Application Overview Page, click "2. Set up Single Sign-On".
- Select SAML as the SSO method.
Step 2: Configure Basic SAML Settings
- Open a new tab and log in to the Veriato Portal.
- Navigate to Admin > Login & Access Control > SSO/SAML Configuration.
- Click Service Provider Information.
Step 3: Map SAML Configuration Values
- Copy Audience (Entity ID) from Veriato and paste it into Identifier (Entity ID) in Entra ID.
- Copy ACS (Consumer) URL Validator from Veriato and paste it into Reply URL (Assertion Consumer Service URL) in Entra ID.
- Click Save to apply changes.
Configuring Identity Provider (IdP) in Veriato
Step 1: Input Identity Provider Details
- Switch to Microsoft Entra Admin Center.
- Copy the following values from Entra ID and paste them into Veriato:
- Issuer URL → Microsoft Entra Identifier
- SAML 2.0 Endpoint (HTTP) → Login URL
- X.509 Certificate → Download the Certificate (Base64), open in Notepad, copy the contents, and paste into X.509 Certificate.
- Click Save to finalize the integration.
- Once you are done, enable the switch.
Assigning Users and Groups for Access Control
Step 1: Assign Users in Entra ID
- Navigate to Users & Groups in Microsoft Entra ID.
- Click "Add User/Group".
- Select the Users or Groups that require access.
- Click "Select", then "Assign" to apply permissions.
Verifying SSO Configuration and AuthenticationStep 1: Initiate SSO Testing in Entra ID
- In Microsoft Entra Admin Center, open the configured Enterprise Application.
- Click "Single Sign-On".
Step 2: Validate SSO Integration
- Scroll down and click "Test".
- Navigate to Test Single Sign-On with [Application Name] page.
- Click "Test Sign In".
- If successful, you will be redirected to Veriato UI, confirming successful SSO authentication.
Note: After enabling SSO, a user cannot log into the Veriato portal using the User Name and Password.