How to Set Up Single Sign-On (SSO) with Microsoft Entra ID

Modified on Mon, 18 May at 2:14 PM

Single Sign-On (SSO) allows your team to log into ELSA using your company's existing login system (such as Microsoft, Google, or Okta) without needing a separate password. Follow this 4-step process to set it up.


1. Request SSO Setup

First, you need to initiate the request with the ELSA team so we can prepare our system for your organization.

  • Email your ELSA account manager or the support team.

  • Provide the following information:

    • Identity Provider (IdP): Tell us which system you use (e.g., Microsoft Azure AD, Google Workspace, Okta, or others).

    • Email Domain: Share your company's domain (e.g., @yourcompany.com).

  • ELSA will configure the backend and send you two required credentials: the SP Entity ID and the ACS URL.


2. Add ELSA to Your Login System (Ask your IT staff to handle this)

Once you receive the credentials from ELSA, configure your specific Identity Provider below:

Option A: Microsoft Azure

  • Log into the Azure Portal.

  • Navigate to Enterprise Applications > New application.

  • Create a custom application and name it "ELSA".

  • Click Single sign-on and select SAML.

  • Enter the SP Entity ID and ACS URL provided by ELSA.

  • Download the Federation Metadata XML file and email it to ELSA.

Option B: Google Workspace

  • Log into the Google Admin Console.

  • Go to Apps > Web and mobile apps.

  • Click Add app > Add custom SAML app.

  • Name the app "ELSA".

  • Enter the ACS URL and SP Entity ID provided by ELSA.

  • Download the metadata file and email it to ELSA.

Option C: Okta

  • Log into your Okta Admin Portal.

  • Go to Applications > Create App Integration.

  • Select SAML 2.0.

  • Name the app "ELSA".

  • Enter the ACS URL and SP Entity ID provided by ELSA.

  • Download the metadata file and email it to ELSA.

Note: If you use a different provider, follow their standard process to add a new SAML application using the credentials we provided.


3. Test the Connection

After sending your metadata file to ELSA, our team will finalize the setup (usually within 1-2 days) and notify you when it is ready to test.

  • Go to the ELSA login page.

  • Enter your work email address.

  • You should be redirected to your company's login page.

  • Log in with your standard work credentials.

  • If successful, you will be automatically returned to ELSA and logged in.

Troubleshooting: If you encounter an error, please take a screenshot or copy the error message and email it to ELSA support immediately.


4. Grant Access to Your Team

Even after setup, your users cannot log in until you explicitly grant them access within your system.

  • Microsoft: In Azure, assign specific users or groups to the ELSA app.

  • Google: In the Admin Console, turn the ELSA app status to ON for your users.

  • Okta: Assign users or groups to the ELSA application.


Once this is complete, your organization is fully integrated!

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article