Setting Up Azure SSO – Creating the Enterprise App
- Visit the Microsoft Entra admin website: https://entra.microsoft.com
- On the top-middle navigation bar, search 'Enterprise Applications', then click on the 'Enterprise applications' search result.
3. Click on the 'New Application' button.
4. Creating the application
- Set a name for the SSO application, for example 'MEX SSO'.
- Don't change the default option 'Non-gallery'.
- Click the bottom 'Create' button.
5. On the left-sidebar click 'Single sign-on'. On the 'Select a single sign-on method' page, click the 'SAML' button.
Setting Up Azure SSO – Apply SSO SAML Settings
- On the 'Set up Single Sign-On with SAML' page, under the section 1 'Basic SAML Configuration' section, click the top-right 'Edit' button.
2. This will pop-up a right-sidebar menu titled 'Basic SAML Configuration'.
-
Under 'Identifier (Entity ID)', click the 'Add Identifier' text. Set the 'Identifier (Entity ID)' to:
-
Under 'Reply URL (Assertion Consumer Service URL)', click the 'Add Reply URL' text. Set the 'Reply URL (Assertion Consumer Service URL)' to:
https://YourWebsiteName.mexcmms.com/SAML/AssertionConsumerService
-
Set the 'Relay State (Optional)' to:
- If your hosted MEX URL address is for example: 'https://SimpleSolutions.mexcmms.com' the name would be 'SimpleSolutions'. For the last 3 steps above, replace the text 'YourWebsiteName' with your website name with: 'SimpleSolutions'.
Click the top 'Save' button to save the changes.
- Back on the 'Set up Single Sign-On with SAML' page, scroll down to section 3 'SAML Certificate'.
- Click the 'Download' button next to 'Certificate (Base64)'.
- This will download a certificate file
- This will need to be emailed to MEX, however as the MEX email provider blocks '.cer' files, first rename the file from e.g. 'MEX SSO.cer' to 'MEX SSO.txt'. By renaming the file to the '.txt' extension this will no longer be blocked.
You will need to copy URL addresses from the Microsoft Entra page. Under section 4 'Set up MEX SSO'.
- Email 'support@mex.com.au’, attach the certificate file e.g. 'MEX SSO.txt' and on the email note your MEX hosted website address e.g. 'https://SimpleSolutions.mexcmms.com/'.
Include the 'Login URL', 'Microsoft Entra Identifier’, and 'Logout URL' Under Set up MEX SSO.
MEX will get back to you to confirm that the certificate has been setup.