SAML SP - Office365
SAML SP - Office365
General Setup
Go to Azure AD (
https://aad.portal.azure.com/
)
Click on "Enterprise applications"
Click "New Application"
Click "Non-gallery application"
IMPORTANT - Office365 requires Azure AD and premium subscription, you may see an alternate screen asking you to upgrade or start a trial
Enter a name (e.g. LUW SAML)
Click on "Single sign-on"
Click on "SAML"
Click the edit icon in Basic SAML Configuration section
Enter the URL for Identifier - https://<your-LUW-address>/swSamlSp/sp
Enter the URL for Reply URL - https://<your-LUW-address>/swSamlSp/acs
Click Save button
Test single sign-on (should prompt, but if not just click "Test" button at bottom of the page)
Adding a user for testing
Go to Azure AD (
https://aad.portal.azure.com/
)
Click on "Enterprise applications"
Click on LUW SAML
Click on "Users and groups"
Add desired user/group
Click "Assign" button
Metadata URL
Go to Azure AD (
https://aad.portal.azure.com/
)
Click on "Enterprise applications"
Click on LUW SAML
Click on "Single sign-on"
Scroll down to "SAML Signing Certificate"
Click the copy button for "App Federation Metadata URL"
Application URL shortcut
Go to Azure AD (
https://aad.portal.azure.com/
)
Click on "Enterprise applications"
Click on LUW SAML application
Click on "Properties"
Copy the "User access URL" link
Example:
https://myapps.microsoft.com/signin/UW%20SAML/1f07ae9f-b48e-4804-9f9e-080218ed2de8?tenantId=20acf201-ecd0-443b-ae08-a163f6a09925