Test Q&A Post - Entra ID

Raja Pothuraju 47,825 Reputation points Microsoft Employee Moderator
2026-06-09T08:34:22.1666667+00:00

Creating this post for testing purpose. <<Internal Use only>>

Microsoft Entra ID need help to configure SAML SSO application.

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments

Answer accepted by question author
Sandeep G-MSFT 21,241 Reputation points Microsoft Employee Moderator
2026-06-09T08:38:26.3333333+00:00

@Raja Pothuraju
You can refer below article to configure SAML SSO for enterprise application
https://learn.microsoft.com/en-us/entra/identity/enterprise-apps/add-application-portal-setup-sso

Also refer below article to know more on how SAML authentication works.
https://learn.microsoft.com/en-us/entra/architecture/auth-saml

Was this answer helpful?

1 person found this answer helpful.
0 comments No comments

Answer accepted by question author

AI answer

2026-06-09T08:35:21.9066667+00:00

To configure a SAML SSO application in Microsoft Entra ID, the standard pattern is:

  1. Configure Microsoft Entra SSO
    1. Sign in to the Microsoft Entra admin center (https://entra.microsoft.com) as at least a Cloud Application Administrator.
    2. Go to Entra ID → Enterprise applications and open the application you want to configure (for example, “Vtiger CRM (SAML)” or “OutSystems Microsoft Entra ID”).
    3. Under Manage, select Single sign-on.
    4. On Select a Single sign-on method, choose SAML.
    5. On Set up Single Sign-On with SAML, select the pencil icon for Basic SAML Configuration and enter the values provided by the application vendor:
      • Identifier (Entity ID) – typically a URL specific to the app.
      • Reply URL (Assertion Consumer Service URL) – where the SAML response is posted.
      • Sign-on URL – used for SP-initiated sign-in if required.
  2. Download and share SAML metadata / certificate with the app
    1. Still on the SAML configuration page, in SAML Signing Certificate, download the Federation Metadata XML or certificate as required by the app.
    2. Provide this metadata/certificate and the Microsoft Entra endpoints (from the Set up <App Name> section) to the application side so they can configure their SAML settings.
  3. Configure SSO on the application side
    1. In the target application’s admin console, configure SAML/SSO using the Microsoft Entra details:
      • Issuer/Entity ID from Microsoft Entra.
      • SSO URL / Login URL from Microsoft Entra.
      • Upload the SAML signing certificate or metadata.
    2. Map the user identifier (often UPN or email) so it matches the Microsoft Entra user.
  4. Create and assign a test user in Microsoft Entra ID
    1. Create a test user (commonly named B.Simon in documentation) following the “create and assign a user account” quickstart.
    2. Assign this user to the SAML application under Enterprise applications → Users and groups so they are allowed to sign in.
  5. Create the corresponding user in the application
    1. In the application, create a user account that matches the Microsoft Entra user (same username/UPN/email) so SSO can map identities correctly.
  6. Test SSO
    1. Use the Test button on the SAML configuration page in Microsoft Entra, or initiate sign-in from the application (SP-initiated) or from My Apps / Entra portal (IdP-initiated).
    2. Verify that the user is signed in without being prompted for application credentials.

This pattern applies across SAML apps such as OutSystems, Vtiger CRM (SAML), Citrix Cloud SAML SSO, and others: configure SAML in Entra, configure SAML in the app with Entra metadata, create/assign a test user in Entra, create a matching user in the app, then test SSO.


References:

AI-generated content may be incorrect. Read our transparency notes for more information.

Was this answer helpful?

1 person found this answer helpful.

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.