Skip to content

Commit 36a13bb

Browse files
authored
Merge pull request #189448 from bhavana-129/tutorial-to-update-153
SaaS App Tutorial: TutorialtoUpdate153
2 parents 2ea0695 + 4e5b9ab commit 36a13bb

15 files changed

+117
-166
lines changed

articles/active-directory/saas-apps/cloudmore-tutorial.md

Lines changed: 25 additions & 28 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,5 @@
11
---
2-
title: 'Tutorial: Azure Active Directory single sign-on (SSO) integration with Cloudmore | Microsoft Docs'
2+
title: 'Tutorial: Azure AD SSO integration with Cloudmore'
33
description: Learn how to configure single sign-on between Azure Active Directory and Cloudmore.
44
services: active-directory
55
author: jeevansd
@@ -9,20 +9,18 @@ ms.service: active-directory
99
ms.subservice: saas-app-tutorial
1010
ms.workload: identity
1111
ms.topic: tutorial
12-
ms.date: 10/23/2019
12+
ms.date: 02/23/2021
1313
ms.author: jeedes
1414
---
1515

16-
# Tutorial: Azure Active Directory single sign-on (SSO) integration with Cloudmore
16+
# Tutorial: Azure AD SSO integration with Cloudmore
1717

1818
In this tutorial, you'll learn how to integrate Cloudmore with Azure Active Directory (Azure AD). When you integrate Cloudmore with Azure AD, you can:
1919

2020
* Control in Azure AD who has access to Cloudmore.
2121
* Enable your users to be automatically signed-in to Cloudmore with their Azure AD accounts.
2222
* Manage your accounts in one central location - the Azure portal.
2323

24-
To learn more about SaaS app integration with Azure AD, see [What is application access and single sign-on with Azure Active Directory](../manage-apps/what-is-single-sign-on.md).
25-
2624
## Prerequisites
2725

2826
To get started, you need the following items:
@@ -34,24 +32,27 @@ To get started, you need the following items:
3432

3533
In this tutorial, you configure and test Azure AD SSO in a test environment.
3634

37-
* Cloudmore supports **SP and IDP** initiated SSO
35+
* Cloudmore supports **SP and IDP** initiated SSO.
36+
37+
> [!NOTE]
38+
> Identifier of this application is a fixed string value so only one instance can be configured in one tenant.
3839
39-
## Adding Cloudmore from the gallery
40+
## Add Cloudmore from the gallery
4041

4142
To configure the integration of Cloudmore into Azure AD, you need to add Cloudmore from the gallery to your list of managed SaaS apps.
4243

43-
1. Sign in to the [Azure portal](https://portal.azure.com) using either a work or school account, or a personal Microsoft account.
44+
1. Sign in to the Azure portal using either a work or school account, or a personal Microsoft account.
4445
1. On the left navigation pane, select the **Azure Active Directory** service.
4546
1. Navigate to **Enterprise Applications** and then select **All Applications**.
4647
1. To add new application, select **New application**.
4748
1. In the **Add from the gallery** section, type **Cloudmore** in the search box.
4849
1. Select **Cloudmore** from results panel and then add the app. Wait a few seconds while the app is added to your tenant.
4950

50-
## Configure and test Azure AD single sign-on for Cloudmore
51+
## Configure and test Azure AD SSO for Cloudmore
5152

5253
Configure and test Azure AD SSO with Cloudmore using a test user called **B.Simon**. For SSO to work, you need to establish a link relationship between an Azure AD user and the related user in Cloudmore.
5354

54-
To configure and test Azure AD SSO with Cloudmore, complete the following building blocks:
55+
To configure and test Azure AD SSO with Cloudmore, perform the following steps:
5556

5657
1. **[Configure Azure AD SSO](#configure-azure-ad-sso)** - to enable your users to use this feature.
5758
* **[Create an Azure AD test user](#create-an-azure-ad-test-user)** - to test Azure AD single sign-on with B.Simon.
@@ -64,19 +65,17 @@ To configure and test Azure AD SSO with Cloudmore, complete the following buildi
6465

6566
Follow these steps to enable Azure AD SSO in the Azure portal.
6667

67-
1. In the [Azure portal](https://portal.azure.com/), on the **Cloudmore** application integration page, find the **Manage** section and select **single sign-on**.
68+
1. In the Azure portal, on the **Cloudmore** application integration page, find the **Manage** section and select **single sign-on**.
6869
1. On the **Select a single sign-on method** page, select **SAML**.
69-
1. On the **Set up single sign-on with SAML** page, click the edit/pen icon for **Basic SAML Configuration** to edit the settings.
70+
1. On the **Set up single sign-on with SAML** page, click the pencil icon for **Basic SAML Configuration** to edit the settings.
7071

7172
![Edit Basic SAML Configuration](common/edit-urls.png)
7273

7374
1. On the **Basic SAML Configuration** section, the user does not have to perform any step as the app is already pre-integrated with Azure.
7475

75-
![Cloudmore Domain and URLs single sign-on information](common/preintegrated.png)
76-
7776
1. Click **Set additional URLs** and perform the following step if you wish to configure the application in **SP** initiated mode:
7877

79-
In the **Sign-on URL** text box, type a URL:
78+
In the **Sign-on URL** text box, type the URL:
8079
`https://www.cloudmore.com`
8180

8281
1. Click **Save**.
@@ -115,13 +114,7 @@ In this section, you'll enable B.Simon to use Azure single sign-on by granting a
115114
1. In the Azure portal, select **Enterprise Applications**, and then select **All applications**.
116115
1. In the applications list, select **Cloudmore**.
117116
1. In the app's overview page, find the **Manage** section and select **Users and groups**.
118-
119-
![The "Users and groups" link](common/users-groups-blade.png)
120-
121117
1. Select **Add user**, then select **Users and groups** in the **Add Assignment** dialog.
122-
123-
![The Add User link](common/add-assign-user.png)
124-
125118
1. In the **Users and groups** dialog, select **B.Simon** from the Users list, then click the **Select** button at the bottom of the screen.
126119
1. If you're expecting any role value in the SAML assertion, in the **Select Role** dialog, select the appropriate role for the user from the list and then click the **Select** button at the bottom of the screen.
127120
1. In the **Add Assignment** dialog, click the **Assign** button.
@@ -136,16 +129,20 @@ In this section, you create a user called B.Simon in Cloudmore. Work with [Clou
136129

137130
## Test SSO
138131

139-
In this section, you test your Azure AD single sign-on configuration using the Access Panel.
132+
In this section, you test your Azure AD single sign-on configuration with following options.
133+
134+
#### SP initiated:
135+
136+
* Click on **Test this application** in Azure portal. This will redirect to Cloudmore Sign on URL where you can initiate the login flow.
140137

141-
When you click the Cloudmore tile in the Access Panel, you should be automatically signed in to the Cloudmore for which you set up SSO. For more information about the Access Panel, see [Introduction to the Access Panel](https://support.microsoft.com/account-billing/sign-in-and-start-apps-from-the-my-apps-portal-2f3b1bae-0e5a-4a86-a33e-876fbd2a4510).
138+
* Go to Cloudmore Sign-on URL directly and initiate the login flow from there.
142139

143-
## Additional resources
140+
#### IDP initiated:
144141

145-
- [ List of Tutorials on How to Integrate SaaS Apps with Azure Active Directory ](./tutorial-list.md)
142+
* Click on **Test this application** in Azure portal and you should be automatically signed in to the Cloudmore for which you set up the SSO.
146143

147-
- [What is application access and single sign-on with Azure Active Directory? ](../manage-apps/what-is-single-sign-on.md)
144+
You can also use Microsoft My Apps to test the application in any mode. When you click the Cloudmore tile in the My Apps, if configured in SP mode you would be redirected to the application sign on page for initiating the login flow and if configured in IDP mode, you should be automatically signed in to the Cloudmore for which you set up the SSO. For more information about the My Apps, see [Introduction to the My Apps](../user-help/my-apps-portal-end-user-access.md).
148145

149-
- [What is conditional access in Azure Active Directory?](../conditional-access/overview.md)
146+
## Next steps
150147

151-
- [Try Cloudmore with Azure AD](https://aad.portal.azure.com/)
148+
Once you configure Cloudmore you can enforce session control, which protects exfiltration and infiltration of your organization’s sensitive data in real time. Session control extends from Conditional Access. [Learn how to enforce session control with Microsoft Cloud App Security](/cloud-app-security/proxy-deployment-aad).
Lines changed: 22 additions & 39 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,5 @@
11
---
2-
title: 'Tutorial: Azure Active Directory single sign-on (SSO) integration with CloudSign | Microsoft Docs'
2+
title: 'Tutorial: Azure AD SSO integration with CloudSign'
33
description: Learn how to configure single sign-on between Azure Active Directory and CloudSign.
44
services: active-directory
55
author: jeevansd
@@ -9,20 +9,18 @@ ms.service: active-directory
99
ms.subservice: saas-app-tutorial
1010
ms.workload: identity
1111
ms.topic: tutorial
12-
ms.date: 07/15/2020
12+
ms.date: 02/23/2022
1313
ms.author: jeedes
1414
---
1515

16-
# Tutorial: Azure Active Directory single sign-on (SSO) integration with CloudSign
16+
# Tutorial: Azure AD SSO integration with CloudSign
1717

1818
In this tutorial, you'll learn how to integrate CloudSign with Azure Active Directory (Azure AD). When you integrate CloudSign with Azure AD, you can:
1919

2020
* Control in Azure AD who has access to CloudSign.
2121
* Enable your users to be automatically signed-in to CloudSign with their Azure AD accounts.
2222
* Manage your accounts in one central location - the Azure portal.
2323

24-
To learn more about SaaS app integration with Azure AD, see [What is application access and single sign-on with Azure Active Directory](../manage-apps/what-is-single-sign-on.md).
25-
2624
## Prerequisites
2725

2826
To get started, you need the following items:
@@ -34,27 +32,24 @@ To get started, you need the following items:
3432

3533
In this tutorial, you configure and test Azure AD SSO in a test environment.
3634

37-
* CloudSign supports **SP** initiated SSO
38-
39-
* Once you configure CloudSign you can enforce session control, which protect exfiltration and infiltration of your organization’s sensitive data in real-time. Session control extend from Conditional Access. [Learn how to enforce session control with Microsoft Defender for Cloud Apps](/cloud-app-security/proxy-deployment-any-app).
35+
* CloudSign supports **SP** initiated SSO.
4036

41-
## Adding CloudSign from the gallery
37+
## Add CloudSign from the gallery
4238

4339
To configure the integration of CloudSign into Azure AD, you need to add CloudSign from the gallery to your list of managed SaaS apps.
4440

45-
1. Sign in to the [Azure portal](https://portal.azure.com) using either a work or school account, or a personal Microsoft account.
41+
1. Sign in to the Azure portal using either a work or school account, or a personal Microsoft account.
4642
1. On the left navigation pane, select the **Azure Active Directory** service.
4743
1. Navigate to **Enterprise Applications** and then select **All Applications**.
4844
1. To add new application, select **New application**.
4945
1. In the **Add from the gallery** section, type **CloudSign** in the search box.
5046
1. Select **CloudSign** from results panel and then add the app. Wait a few seconds while the app is added to your tenant.
5147

52-
5348
## Configure and test Azure AD SSO for CloudSign
5449

5550
Configure and test Azure AD SSO with CloudSign using a test user called **B.Simon**. For SSO to work, you need to establish a link relationship between an Azure AD user and the related user in CloudSign.
5651

57-
To configure and test Azure AD SSO with CloudSign, complete the following building blocks:
52+
To configure and test Azure AD SSO with CloudSign, perform the following steps:
5853

5954
1. **[Configure Azure AD SSO](#configure-azure-ad-sso)** - to enable your users to use this feature.
6055
1. **[Create an Azure AD test user](#create-an-azure-ad-test-user)** - to test Azure AD single sign-on with B.Simon.
@@ -67,25 +62,25 @@ To configure and test Azure AD SSO with CloudSign, complete the following buildi
6762

6863
Follow these steps to enable Azure AD SSO in the Azure portal.
6964

70-
1. In the [Azure portal](https://portal.azure.com/), on the **CloudSign** application integration page, find the **Manage** section and select **single sign-on**.
65+
1. In the Azure portal, on the **CloudSign** application integration page, find the **Manage** section and select **single sign-on**.
7166
1. On the **Select a single sign-on method** page, select **SAML**.
72-
1. On the **Set up single sign-on with SAML** page, click the edit/pen icon for **Basic SAML Configuration** to edit the settings.
67+
1. On the **Set up single sign-on with SAML** page, click the pencil icon for **Basic SAML Configuration** to edit the settings.
7368

7469
![Edit Basic SAML Configuration](common/edit-urls.png)
7570

76-
1. On the **Basic SAML Configuration** section, enter the values for the following fields:
71+
1. On the **Basic SAML Configuration** section, perform the following steps:
7772

78-
a. In the **Sign on URL** text box, type the URL:
79-
`https://www.cloudsign.jp/login`
80-
81-
b. In the **Identifier (Entity ID)** text box, type a URL using the following pattern:
73+
a. In the **Identifier (Entity ID)** text box, type a value using the following pattern:
8274
`urn:amazon:cognito:sp:ap-northeast-1_<CUSTOM_ID>`
8375

84-
c. In the **Reply URL** text box, type a URL using the following pattern:
76+
b. In the **Reply URL** text box, type a URL using the following pattern:
8577
`https://cloudsign-<CUSTOM_ID>.auth.ap-northeast-1.amazoncognito.com/saml2/idpresponse`
8678

79+
c. In the **Sign on URL** text box, type the URL:
80+
`https://www.cloudsign.jp/login`
81+
8782
> [!NOTE]
88-
> These values are not real. Update these values with the actual Reply URL and Identifier. Contact [CloudSign Client support team](mailto:[email protected]) to get these values. You can also refer to the patterns shown in the **Basic SAML Configuration** section in the Azure portal.
83+
> These values are not real. Update these values with the actual Identifier and Reply URL. Contact [CloudSign Client support team](mailto:[email protected]) to get these values. You can also refer to the patterns shown in the **Basic SAML Configuration** section in the Azure portal.
8984

9085
1. On the **Set up single sign-on with SAML** page, in the **SAML Signing Certificate** section, find **Federation Metadata XML** and select **Download** to download the certificate and save it on your computer.
9186

@@ -114,13 +109,7 @@ In this section, you'll enable B.Simon to use Azure single sign-on by granting a
114109
1. In the Azure portal, select **Enterprise Applications**, and then select **All applications**.
115110
1. In the applications list, select **CloudSign**.
116111
1. In the app's overview page, find the **Manage** section and select **Users and groups**.
117-
118-
![The "Users and groups" link](common/users-groups-blade.png)
119-
120112
1. Select **Add user**, then select **Users and groups** in the **Add Assignment** dialog.
121-
122-
![The Add User link](common/add-assign-user.png)
123-
124113
1. In the **Users and groups** dialog, select **B.Simon** from the Users list, then click the **Select** button at the bottom of the screen.
125114
1. If you're expecting any role value in the SAML assertion, in the **Select Role** dialog, select the appropriate role for the user from the list and then click the **Select** button at the bottom of the screen.
126115
1. In the **Add Assignment** dialog, click the **Assign** button.
@@ -135,20 +124,14 @@ In this section, you create a user called B.Simon in CloudSign. Work with [Clou
135124

136125
## Test SSO
137126

138-
In this section, you test your Azure AD single sign-on configuration using the Access Panel.
139-
140-
When you click the CloudSign tile in the Access Panel, you should be automatically signed in to the CloudSign for which you set up SSO. For more information about the Access Panel, see [Introduction to the Access Panel](https://support.microsoft.com/account-billing/sign-in-and-start-apps-from-the-my-apps-portal-2f3b1bae-0e5a-4a86-a33e-876fbd2a4510).
141-
142-
## Additional resources
143-
144-
- [ List of Tutorials on How to Integrate SaaS Apps with Azure Active Directory ](./tutorial-list.md)
127+
In this section, you test your Azure AD single sign-on configuration with following options.
145128

146-
- [What is application access and single sign-on with Azure Active Directory? ](../manage-apps/what-is-single-sign-on.md)
129+
* Click on **Test this application** in Azure portal. This will redirect to CloudSign Sign-on URL where you can initiate the login flow.
147130

148-
- [What is conditional access in Azure Active Directory?](../conditional-access/overview.md)
131+
* Go to CloudSign Sign-on URL directly and initiate the login flow from there.
149132

150-
- [Try CloudSign with Azure AD](https://aad.portal.azure.com/)
133+
* You can use Microsoft My Apps. When you click the CloudSign tile in the My Apps, this will redirect to CloudSign Sign-on URL. For more information about the My Apps, see [Introduction to the My Apps](../user-help/my-apps-portal-end-user-access.md).
151134

152-
- [What is session control in Microsoft Defender for Cloud Apps?](/cloud-app-security/proxy-intro-aad)
135+
## Next steps
153136

154-
- [How to protect CloudSign with advanced visibility and controls](/cloud-app-security/proxy-intro-aad)
137+
Once you configure CloudSign you can enforce session control, which protects exfiltration and infiltration of your organization’s sensitive data in real time. Session control extends from Conditional Access. [Learn how to enforce session control with Microsoft Cloud App Security](/cloud-app-security/proxy-deployment-aad).

0 commit comments

Comments
 (0)