Create a new app at Microsoft Entra ID. To do this, use the “New application” button and then “Create your own application.”

Then choose an app name and “Integrate any other application you don't find in the gallery.”

Set the single sign-on method to “SAML”.

In the configuration below, first ignore steps 1 and 2, download the certificate “Certificate (Base64)” from step 3 and copy the Microsoft Entra Identifier and the login & logout URLs from step 4.

Add the copied values to the certReady settings app.certready.eu/sso one.

- IDP Entity ID — Microsoft Entry Identifier from step 4
- IDP login URL — login URL from step 4
- IDP logout URL — Logout URL from step 4
- IDP x509 certificate — Certificate (Base64) from step 3
You can then save the configuration and open the generated metadata XML for the Entra ID configuration.

In step 1, enter the identifier (entity ID) the value entityID (URL, ends in “/metadata”) and the “reply URL” (URL, ends in “/acs”).
In step 2, set the “Unique User Identifier (Name ID)” to “user.mail [nameid-format:emailAddress]”.

You can test a successful configuration via a link on the SSO setup page.
If everything is set up correctly, you will automatically be authenticated and logged in to certready.eu.
