SAML with Microsoft Entra ID
This guide will help you enable SSO from Microsoft Entra ID so your users can securely log into Rely.io without creating new credentials.
Last updated
Was this helpful?
This guide will help you enable SSO from Microsoft Entra ID so your users can securely log into Rely.io without creating new credentials.
Last updated
Was this helpful?
This process can only be fully achieved in collaboration with our team.
Exact instructions are provided in the impacted sections below where this exchange of information is required.
In order to connect your Microsoft Entra ID directory to Rely.io you need to create a dedicated App by following the steps below.
Log into your Microsoft Azure Portal. Please ensure you have permissions to create Enterprise Applications and configure SSO. If you don't have the necessary permissions please reach out to an Administrator.
In the search bar, type Entra ID and select Microsoft Entra ID to navigate to the correct management panel.
In your directory page go to Enterprise Applications.
On the top menu bar select New Application and then Create your own application.
Now, specify the name that you would like to give to your application and select the last option as we want to integrate with an application you don't manage and doesn't exist in the Entra Gallery.
Now that the Enterprise Application is created we can start the SSO configuration with SAML. Go to Single sign-on > SAML.
To proceed with the SSO configuration is important that you specify the Identifier and the Reply URL on the Basic SAML Configuration section. Click the Edit button and provide the following values:
Identifier (Entity ID): urn:auth0:relyio:<connection-name>
Reply URL (ACS URL): https://auth.rely.io/login/callback
(Optional) On step 2 - mapping - you can map additional properties such as groups. By default the email, full name, first name and last name are already mapped.
Now we need to gather some information to provide Rely.io's team for configuration on their side. Start by downloading your certificate in .pem
format.
On step 3, click on Edit, then select the three dots next to the Active certificate and down the PEM certificate.
Then, copy the Login URL and store it somewhere safe.
Send the SSO URL and Certificate to Rely.io via one of the following means:
Direct outreach to your dedicated Customer Success Manager
In Slack via your Dedicated Channel (for Enterprise customers)
Via your in-product chat bot
Via email to support@rely.io
You will receive in return a confirmation once all configurations are done on Rely.io's side.
Once you get the confirmation, move to the final step of the wizard to test that the configuration worked.
That's it! You're SAML Connection to Rely.io from Microsoft Entra ID is now ready for your users to use.