This setup is completed in both your Dewy account and Azure AD. An Azure AD Enterprise plan is required to complete this setup.
Log into your Dewy account.
Click Settings, then click "Security."
Click the "Single Sign-On" toggle to set it to the "On" position.
Choose your “Sign In Method” (link back to How it Works section) by clicking the dropdown.
There are two pre-populated values for "Sign-on URL" and "SP Entity ID" on this page. You need these values for SSO setup in Azure AD.
Open a new window or tab in your browser. Log into your Azure AD tenant portal. You may need to work with your IT administrator to complete this part of the setup.
Search for "Enterprise Application" and click the corresponding link.
Click the "New application" option.
Click "Create your own application."
Complete the following fields when creating your application:
Name the application<your-account-name>.dewy.io
Select the "Non-gallery" option
Click the "Create" button
From the "Users and groups" page for your Azure AD portal, click the "Single sign-on" link. This is under "Manage."
Click the "SAML" option.
Click "Edit" for Basic SAML Configuration.
Complete the following:
Copy the "Single sign-on URL" value from Dewy and paste it into the "Reply URL (Assertion Consumer Service URL)" field in Azure AD
Copy the Audience URI (SP Entity ID) value from Dewy and paste it into the Identifier (Entity ID) field in Azure AD
In Azure AD, set the Logout URL value to https://<your-account-name>.dewy.io/admin/index.php?action=logout
Click "Save"
The field order is different in Dewy and Azure.
From the SAML-based Sign-on page in Azure AD, click the "Download" link. This is next to "Federation Metadata XML" under "SAML Signing Certificate."
Open the XML file with your favorite text editor and copy the file's contents to your clipboard.
In your Dewy account:
Paste the XML file contents into the "SAML Metadata" field.
Update the "Name of Secure Login Provider." For example, you can use "Azure AD Single Sign-On"
Click the "Save settings" button.
Test your SSO settings
Go to the "SAML-based Sign-on" page in your Azure AD portal.
Scroll to the bottom of the page and click the "Test" button