You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/active-directory/saas-apps/salesforce-tutorial.md
+19-24Lines changed: 19 additions & 24 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -1,25 +1,25 @@
1
1
---
2
-
title: 'Tutorial: Azure Active Directory Single sign-on (SSO) integration with Salesforce | Microsoft Docs'
2
+
title: 'Tutorial: Azure Active Directory single sign-on (SSO) integration with Salesforce | Microsoft Docs'
3
3
description: Learn how to configure single sign-on between Azure Active Directory and Salesforce.
4
4
services: active-directory
5
5
documentationCenter: na
6
6
author: jeevansd
7
-
manager: daveba
7
+
manager: mtillman
8
8
ms.reviewer: barbkess
9
9
10
10
ms.assetid: d2d7d420-dc91-41b8-a6b3-59579e043b35
11
11
ms.service: active-directory
12
12
ms.subservice: saas-app-tutorial
13
13
ms.workload: identity
14
14
ms.tgt_pltfrm: na
15
-
ms.devlang: na
16
15
ms.topic: tutorial
17
-
ms.date: 08/13/2019
16
+
ms.date: 12/23/2019
18
17
ms.author: jeedes
19
18
20
19
ms.collection: M365-identity-device-management
21
20
---
22
-
# Tutorial: Azure Active Directory Single sign-on (SSO) integration with Salesforce
21
+
22
+
# Tutorial: Azure Active Directory single sign-on (SSO) integration with Salesforce
23
23
24
24
In this tutorial, you'll learn how to integrate Salesforce with Azure Active Directory (Azure AD). When you integrate Salesforce with Azure AD, you can:
25
25
@@ -59,34 +59,31 @@ To configure the integration of Salesforce into Azure AD, you need to add Salesf
59
59
1. In the **Add from the gallery** section, type **Salesforce** in the search box.
60
60
1. Select **Salesforce** from results panel and then add the app. Wait a few seconds while the app is added to your tenant.
61
61
62
+
62
63
## Configure and test Azure AD single sign-on for Salesforce
63
64
64
65
Configure and test Azure AD SSO with Salesforce using a test user called **B.Simon**. For SSO to work, you need to establish a link relationship between an Azure AD user and the related user in Salesforce.
65
66
66
67
To configure and test Azure AD SSO with Salesforce, complete the following building blocks:
67
68
68
69
1.**[Configure Azure AD SSO](#configure-azure-ad-sso)** - to enable your users to use this feature.
69
-
1.**[Create an Azure AD test user](#create-an-azure-ad-test-user)** - to test Azure AD single sign-on with B.Simon.
70
-
1.**[Assign the Azure AD test user](#assign-the-azure-ad-test-user)** - to enable B.Simon to use Azure AD single sign-on.
71
-
2.**[Configure Salesforce SSO](#configure-salesforce-sso)** - to configure the Single Sign-On settings on application side.
72
-
1.**[Create Salesforce test user](#create-salesforce-test-user)** - to have a counterpart of B.Simon in Salesforce that is linked to the Azure AD representation of user.
73
-
3.**[Test SSO](#test-sso)** - to verify whether the configuration works.
70
+
***[Create an Azure AD test user](#create-an-azure-ad-test-user)** - to test Azure AD single sign-on with B.Simon.
71
+
***[Assign the Azure AD test user](#assign-the-azure-ad-test-user)** - to enable B.Simon to use Azure AD single sign-on.
72
+
1.**[Configure Salesforce SSO](#configure-salesforce-sso)** - to configure the single sign-on settings on application side.
73
+
***[Create Salesforce test user](#create-salesforce-test-user)** - to have a counterpart of B.Simon in Salesforce that is linked to the Azure AD representation of user.
74
+
1.**[Test SSO](#test-sso)** - to verify whether the configuration works.
74
75
75
76
## Configure Azure AD SSO
76
77
77
-
In this section, you enable Azure AD single sign-on in the Azure portal.
78
-
79
-
To configure Azure AD single sign-on with Salesforce, perform the following steps:
80
-
81
78
Follow these steps to enable Azure AD SSO in the Azure portal.
82
79
83
-
1. In the [Azure portal](https://portal.azure.com/), on the **Salesforce** application integration page, find the **Manage** section and select **Single sign-on**.
84
-
1. On the **Select a Single sign-on method** page, select **SAML**.
85
-
1. On the **Set up Single Sign-On with SAML** page, click the edit/pen icon for **Basic SAML Configuration** to edit the settings.
80
+
1. In the [Azure portal](https://portal.azure.com/), on the **Salesforce** application integration page, find the **Manage** section and select **single sign-on**.
81
+
1. On the **Select a single sign-on method** page, select **SAML**.
82
+
1. On the **Set up single sign-on with SAML** page, click the edit/pen icon for **Basic SAML Configuration** to edit the settings.
1. On the **Basic SAML Configuration** section, perform the following steps:
86
+
1. On the **Basic SAML Configuration** section, enter the values for the following fields:
90
87
91
88
a. In the **Sign-on URL** textbox, type the value using the following pattern:
92
89
@@ -103,11 +100,11 @@ Follow these steps to enable Azure AD SSO in the Azure portal.
103
100
> [!NOTE]
104
101
> These values are not real. Update these values with the actual Sign-on URL and Identifier. Contact [Salesforce Client support team](https://help.salesforce.com/support) to get these values.
105
102
106
-
1. On the **Set up Single Sign-On with SAML** page, in the **SAML Signing Certificate** section, click **Download** to download the **Federation Metadata XML**from the given options as per your requirement and save it on your computer.
103
+
1. On the **Set up single sign-on with SAML** page, in the **SAML Signing Certificate** section, find **Federation Metadata XML**and select **Download** to download the certificate and save it on your computer.
1. Select the **Show password** check box, and then write down the value that's displayed in the **Password** box.
124
121
1. Click **Create**.
125
-
126
-
> [!NOTE]
127
-
> Salesforce user attributes are case sensitive for SAML validation.
128
122
129
123
### Assign the Azure AD test user
130
124
@@ -229,6 +223,7 @@ When you click the Salesforce tile in the Access Panel, you should be automatica
229
223
230
224
## Additional resources
231
225
226
+
232
227
-[List of Tutorials on How to Integrate SaaS Apps with Azure Active Directory](https://docs.microsoft.com/azure/active-directory/active-directory-saas-tutorial-list)
233
228
234
229
-[What is application access and single sign-on with Azure Active Directory?](https://docs.microsoft.com/azure/active-directory/active-directory-appssoaccess-whatis)
@@ -237,4 +232,4 @@ When you click the Salesforce tile in the Access Panel, you should be automatica
237
232
238
233
-[Configure User Provisioning](salesforce-provisioning-tutorial.md)
239
234
240
-
-[Try Salesforce with Azure AD](https://aad.portal.azure.com)
235
+
-[Try Salesforce with Azure AD](https://aad.portal.azure.com)
0 commit comments