Reference: Microsoft Azure SSO Configuration
This topic provides additional information about configuring Microsoft Azure as your identity provider (IdP) for Single Sign-On (SSO). For general SSO configuration steps, see Steps: Configure Single Sign-On (SSO) for Contract Management and Document Intelligence
Considerations for Microsoft Azure Configuration
- Application type: When adding a new SAML application in Azure, select the option to integrate any other application that is not in the gallery.
- X.509 Certificate: You must download the Base64 certificate from Azure. Open the downloaded file with a text editor to copy and paste the certificate into the Contract Management and Document Intelligence SSO configuration.
- Authentication Context Class: Set theAuthentication Context Classto None in the Contract Management and Document Intelligence SSO configuration, as we don’t support various Microsoft AuthnContext.
- Attribute mappings: Unlike other IdPs where attributes are typically text, attributes in Azure are URLs. You need to copy the entire URL value for each attribute, such as first name or email address, and paste it into the Contract Management and Document Intelligence SSO configuration.