Skip to main content

Configuring Azure Active Directory SAML

If your organization uses Azure Active Directory then it is possible to configure SSO Authentication for Auto Insights. The following steps show the Azure configuration that is required.

This article is a companion to the Single Sign-On (SSO) article, providing specific steps to configure Azure AD SAML.

  1. Login to Azure at https://portal.azure.com.

  2. Navigate to Azure Active Directoryhttps://portal.azure.com/#blade/Microsoft_AAD_IAM/ActiveDirectoryMenuBlade/Overview.

    AzureAD_Config.png
  3. Select  Enterprise Applications.

    AzureAD_EnterpriseApps.png
  4. Select + New Application.

    AzureAD_CreateApp1.png
  5. Select Create your own application.

    AzureAD_CreateApp2.png
  6. Give the app a name, for example Auto Insights.

  7. Select Non-gallery application. 

  8. Select Create.

    AzureAD_CreateApp3.png
  9. Select Single sign-on.

    AzureAD_SSO.png
  10. Select SAML.

    AzureAD_SAML.png
  11. Set the following configuration properties.

    • Identifier: https://<region>.autoinsights.alteryxcloud.com.

    • Reply URL: https://<your custom URL>/userservice/auth/saml.

    • Relay State: <leave empty>.

    • Logout URL: https://<your custom URL>/userservice/logout.

    Optionally:

    • Sign on URL: https://<your custom URL>/userservice/auth/saml.

    Let the Auto Insights team know if you configure Identifier to a different value.

    AzureAD_SAML_Configuration.png
  12. Download Certificate (Base64).

    AzureAD_SAML_Certificate.png
  13. Provide the following to the Auto Insights Team:

    • Identifier,

    • Certificate (Base 64),

    • Login URL.

    AzureAD_Step4.png
  14. If you get the following error message when testing login...

    AzureAD_login_error.png

    ...then you may need to add users/groups to the Auto Insights application:

    AzureAD_User_and_Groups.png