SAML SP - Office365

SAML SP - Office365



General Setup
  1. Go to Azure AD (https://aad.portal.azure.com/)
  2. Click on "Enterprise applications"
  3. Click "New Application"




  4. Click "Non-gallery application"




    IMPORTANT - Office365 requires Azure AD and premium subscription, you may see an alternate screen asking you to upgrade or start a trial

  5. Enter a name (e.g. LUW SAML)
  6. Click on "Single sign-on"
  7. Click on "SAML"
  8. Click the edit icon in Basic SAML Configuration section
  9. Enter the URL for Identifier - https://<your-LUW-address>/swSamlSp/sp
  10. Enter the URL for Reply URL - https://<your-LUW-address>/swSamlSp/acs
  11. Click Save button
  12. Test single sign-on (should prompt, but if not just click "Test" button at bottom of the page)



Adding a user for testing

  1. Go to Azure AD (https://aad.portal.azure.com/)
  2. Click on "Enterprise applications"
  3. Click on LUW SAML
  4. Click on "Users and groups"
  5. Add desired user/group
  6. Click "Assign" button



Metadata URL

  1. Go to Azure AD (https://aad.portal.azure.com/)
  2. Click on "Enterprise applications"
  3. Click on LUW SAML
  4. Click on "Single sign-on"
  5. Scroll down to "SAML Signing Certificate"
  6. Click the copy button for "App Federation Metadata URL"



Application URL shortcut

  1. Go to Azure AD (https://aad.portal.azure.com/)
  2. Click on "Enterprise applications"
  3. Click on LUW SAML application
  4. Click on "Properties"
  5. Copy the "User access URL" link

    Example: https://myapps.microsoft.com/signin/UW%20SAML/1f07ae9f-b48e-4804-9f9e-080218ed2de8?tenantId=20acf201-ecd0-443b-ae08-a163f6a09925