Enable users to login with their Microsoft SSO
Security > Authentication > SSO with third party IdP
.Third-party SSO profiles
section, click on Add SAML profile
.SSO profile name
: type Microsoft SSO - SAML
, or any naming of your choice.IDP entity ID
: leave blank.Sign-in page URL
: leave blank.Sign-out page URL
: leave blank.Change password URL
: leave blank.Save
.SAML SSO profile
page that appears contains two URLs (Entity ID
and ACS URL
). Save these URLs, as you will need them in the next section when you configure Microsoft Entra ID.Identity > Applications > Enterprise applications
and then click on New application
.Google Cloud / G Suite Connector by Microsoft
from the results. A drawer menu will appear on the left. Now, click on the Create
button to add the application.Identity > Applications > Enterprise applications > Google Cloud / G Suite Connector by Microsoft
. There, go to the Single-sign-on
section.SAML
option.Basic SAML Configuration
section, click on the pencil icon to edit the settings.Identifier
textbox, paste the Entity ID
that you saved previously from the Google admin, and set Default
to enabled
. Remove all other entries.
Reply URL
textbox, paste the ACS URL
that you saved previously from the Google admin.
Sign on URL
textbox, paste the custom URL that the Email Meter team has provided to you. If you don’t have it, please get in touch with your point of contact.
Save
to save your changes.
SAML Signing Certificate
section, find Certificate (Base 64)
and click Download
to download the certificate. You will need it shortly.
Set up Google Cloud / G Suite Connector by Microsoft
section, copy the three URLs and save them, as we will need them to set everything up in Google Cloud. Alternatively, leave this tab open so you can go back to it quickly.Security > Authentication > SSO with third party IdP
.Microsoft SSO - SAML
profile that you created earlier.IDP details
section to edit the settings.
IDP entity ID
field, paste the value of Microsoft Entra Identifier
from the previous section.Sign-in page URL
field, paste the value of Login URL
from the previous section.Sign-out page URL
field, enter the following URL:Change password URL
, enter the following URL:Verification certificate
section, update the certificate that you downloaded previously.Save
.Manage SSO profile assignements
section, click on Get started
.SSO profile assignement
, click Another SSO profile
and select the one you’ve created in the past step. If you’ve followed our recommended naming conventions, it will be called Microsoft SSO - SAML
.Save
.Identity > Applications > Enterprise applications > Google Cloud / G Suite Connector by Microsoft
. There, go to the Users and groups
section.Add user/group
, and then select the users and/or groups that you need.Assign
button.Can I enable single sign-on only for a subset of my users?
Do I need to pay for each Google user?