Creating the Application
- In Azure, go to Enterprise Applications and click 'New application' then select 'Create your own application'
- In this section input a name for the application (we advise this to be clear and understandable for easy management, e.g. SSO MaxContact) and select 'Integrate any other application you don't find in the gallery (Non-gallery)' then click 'Create' at the bottom
- Once the application has deployed go to 'Manage' > 'Single Sign-On' and select 'SAML'
- You will then be presented with a new page where you will need to configure the 'Identifier' and 'Reply URL'
- Select the 'Edit' button and you will need to select 'Add Identifier' and 'Add reply URL'
- Here we need to add the system URL followed by /sso-saml
(Example entry https://domain.maxcontact.com/ManagerPortal/sso-saml)
- The 'Attributes & Claims' should look like the below
- If 'Group - user.groups' is missing you can add this manually in the 'Edit' by clicking 'Add a group claim' and selecting 'Groups assigned to the application'
- Once done with the above we now need to create any requested groups for this SSO application - the 'Object ID' will be mapped within MaxContact for the corresponding Permission Group under the 'SAML IdP User Group'
- It is advised to have a clear naming convention for the groups set up, as these will be assigned against a permission group. E.g. Agent Group, QA Group, Team Leader Group.
- Lastly, make sure to assign the new groups to the application which can be done through 'Manage' > 'Users and groups'