Configuring Zenity / Azure AD SAML SSO

  1. Open Azure portal
  2. Go to 'Azure Active Directory > Enterprise applications > + New Application'
  3. Now click '+ Create your own application'
  4. For convenience, put AzureViaSamlToZenity under the What’s the name of your app?
  5. Under 'What are you looking to do with your application?' select the 'Integrate any other application you don’t find in the gallery (Non-gallery)' and click 'Create'
  6. Now click 'Single sign-on' in the left pane and under Select a single sign-on method select 'SAML'
  7. In the '1. Basic SAML Configuration' box click 'Edit'
  8. Under Identifier (Entity ID) set up identifier as per this example:
    "urn:auth0:zenity-prod:<company-name>-saml-aad" for EU
    "urn:auth0:zenity-prod-us-1:<company-name>-saml-aad" for US
  9. Set the Reply URL (Assertion Consumer Service URL) to
    "https://zenity-prod.eu.auth0.com/login/callback?connection=[company-name]-saml-aad" for EU
    "https://zenity-prod-us-1.us.auth0.com/login/callback?connection=[company-name]-saml-aad" for US

  10. Click Save

  11. In the '3. SAML Signing Certificate box' click 'Download' next to Certificate (Base64)
  12. In the '4. Set up AzureViaSamlToZenity' box copy the Login URL. It will look like https://login.microsoftonline.com/xxx/saml2
  13. Send the certificate obtain in 11 and the Login URL obtain in 12 to Zenity in a secured channel