Single Sign-On with Microsoft Entra
In this tutorial, you will learn how to integrate your Updraft Organization with your Microsoft Entra Users Directory through SAML. Please follow the next steps.
Step 1 - Obtain the SAML Provider Details from Updraft
Only Owner of an Updraft Organization is able to add an SSO Integration
Open your Account Settings as an Owner
Go to the Security Page
Click Add SSO
You will see now your SAML configuration
Store them
Step 2 - Configure your Identity Provider Microsoft Entra
Now that you have your Service Provider information, it’s time to configure it.
Step 3 - Create your SSO identity Provider Microsoft Entra app
Login to your Azure Portal
Go to All Services
Search for 'Enterprise Applications'
Select Enterprise Applications
Click on New Application
Click on Create your own application
Type in a name
Select: Integration any other application you don't find in the gallery (non-gallery)
Step 4 - Configure your SSO identity Provider Microsoft Entra app
Click on Set up Single Sign On Button
You will be redirected to the SSO with SAML Page
Step 5 - Basic SAML Configuration
Click on Edit
Add Entity ID: getupdraft
Add Reply URL: https://getupdraft.com/saml2_auth/acs/
Click on Save
Step 6 - Attributes & Claims
Add attributes and claims
Name ID = user.userprincipalname
Additional claims:
Save.
Step 7- Create SAML Integration: Get your XML file from Microsoft Entra
On the SAML-based Sign-on page go to step 3: Saml certificates
Click on download the Federation Metadata XML
Step 8- Upload the .xml metadata to your Updraft Organization
Go back to your Updraft Organization
Account Settings
Security Page
Click on Add Microsoft Entra
Upload the obtained .xml file
Save it
Done!
Step 9 - verify the integration
After following all the above steps, log in to your Updraft account to verify that you are now able to sign in with Microsoft Entra.
If the integration was successful:
If you are opening your subdomain.getupdraft.com/login page you will see the Login with Entra Button
When your assigned Users click on the Login with SSO button they will be redirected to the Microsoft login page
Upon successful authentication with Microsoft, your users will be logged into Updraft automatically and redirected to the dashboard page of Updraft
A new account for your uses will be created in Updraft after they logged-in the first time
Now you can assign projects and apps to your users.
If you encounter any issues, please refer back to the previous steps or reach out to the support team for assistance.
Last updated