How to Set Up Single Sign-On with Microsoft Entra ID

Microsoft Entra ID (formerly Azure Active Directory) is a universal platform to manage and secure identities. If your company uses Microsoft Entra ID, you can set up single sign-on for your Oktopost account using SAML 2.0 with Entra ID as the identity provider. Oktopost supports both SP-initiated and IdP-initiated single sign-on.

Prerequisites

  • Administrator access to Oktopost
  • Administrator access to Microsoft Entra ID

Adding Oktopost SAML from the Gallery

First, add Oktopost to your list of enterprise applications.

  1. Sign in to the Microsoft Entra admin center.
  2. Go to Identity > Applications > Enterprise applications.
  3. Click New application.
  4. In Browse Microsoft Entra Gallery, search for Oktopost SAML.
  5. Select Oktopost SAML and add the application. Wait a few seconds while the app is added to your tenant.
New application button in Enterprise applications

Configure Microsoft Entra Single Sign-On

  1. On the Oktopost SAML application page, open Manage > Single sign-on.
  2. Select SAML as the single sign-on method.
  3. Click the pencil icon for Basic SAML Configuration to edit the settings.
Basic SAML Configuration in Microsoft Entra

For most accounts, the gallery app is preconfigured. EU-hosted accounts must add the eu- prefix to each URL (for example, change https://app.oktopost.com to https://eu-app.oktopost.com in the Identifier field).

To configure SP-initiated mode, click Set additional URLs and enter the Sign-on URL:

  • US: https://app.oktopost.com/auth/login
  • EU: https://eu-app.oktopost.com/auth/login

Click Save.

  1. In the SAML Signing Certificate section, find Certificate (Base64) and click Download.
  2. In the Set up Oktopost SAML section, copy the Login URL and Microsoft Entra Identifier.
SAML signing certificate download in Microsoft EntraSet up Oktopost SAML values in Microsoft Entra

Configure Oktopost Single Sign-On

  1. Sign in to Oktopost in a separate browser tab.
  2. Go to Settings > Security > Single Sign-On.
  3. Enable Enable SSO.
  4. Paste the Login URL from Entra into the SAML Endpoint field.
  5. Paste the Microsoft Entra Identifier into the Issuer URL field.
  6. Upload the downloaded Certificate (Base64) file.
  7. Click Save.

After configuration, assign users from the Users and groups pane in Microsoft Entra. You can test the integration by signing out of Oktopost and using the Test option in Entra.

Was this article helpful?
0 out of 0 found this helpful