Setting up Azure AD for SAML

For the detailed information on how to setup SAML-based single sign-on for Secret Server in Azure Active Directory, see Microsoft's Enable single sign-on for an enterprise application.

Adding Users to Single Sign-On in Azure AD

Follow the steps in Register the user account guide to learn how to register a user account for your application.

If you have accounts in which the sAMAccountName differs from the UPN name, you can create custom rules to accommodate the differences. See Directory Services.

Azure AD Configuration Steps

For more information on how to setup SAML-based single sign-on for Secret Server in Azure Active Directory, see Microsoft's Enable single sign-on for an enterprise application .
You must have SAML already setup in Secret Server with a valid certificate. See the Setting up Secret Server section in Configuring SAML Single Sign-on.

Follow the steps in Configure SAML setting to register a user account for your application.

Advanced Settings

The following Secret Server Identity Provider Advanced Settings can be configured in Azure AD:

If you apply advanced certificate signing settings to the Secret Server IdP application in Azure AD, return to the Identity Providers page in Secret Server and click the button next the provider and select Advanced Settings to apply the same settings.