Skip to main content

Setting up SSO with Microsoft Entra ID (formerly Azure Active Directory)

Only IT Admins can set up SSO in Clipboard.

This help article is specifically for setting up SSO with Microsoft Entra ID.

Watch the video below to see how to set up and test Azure SSO with Clipboard:

For more information on SSO, check out our articles on Setting Up SSO for your School and Common SSO Errors.

Creating the Application

  1. Visit portal.azure.com

  2. Click Enterprise applications

  3. Click New application

  4. Click Create your own application

  5. Add a name and use the Non-gallery option

  6. Click Create.

Set up Single Sign On (SSO)

  1. Click Get Started within Azure, then click 'Set up single sign on.'

  2. Select SAML

  3. Click Edit within Basic SAML Configuration

  4. Visit go.clipboard.app/settings/security/sso/configure in a separate browser window or tab

  5. Copy the Metadata URLs into the Identifier (Entity ID) fields

  6. Copy the Reply URLs into the Reply URL (Assertion Consumer Service URL) fields

  7. Save the Basic SAML Configuration

  8. Copy the App Federation Metadata URL from the SAML Signing Certificate card within Azure

  9. Go back to Clipboard SSO Settings, click Configure and tick the boxes to enable App and Portal SSO. Paste the App URL into the App Metadata URL field and the Portal URL into the Portal Metadata URL field. You can have the same metadata URL for both the App and Portal, or separate URLs

  10. Add a school email domain to allow users to log into go.clipboard.app for a smoother experience. Click Save.

In the majority of cases, name_id will be the best field to use for property mapping. If, after testing, you receive 'Mapping Not Found' errors in your SSO Logs, check out our help article on Common SSO Errors. If you receive a User not Found error, try updating the SAML Attribute Name to be the full schema URL.

Adding users and groups

To add users who can sign into Clipboard:

  1. Click on Users and groups on Azure's sidebar

  2. Click Add user/group

  3. Select the users or groups of accounts you would like to give access to Clipboard. Clipboard will limit the users who can sign into the App to those listed in go.clipboard.app/staff. Clipboard also limits the users who can sign into the Portal to current students and guardians listed in go.clipboard.app/students

  4. Click Assign.

Testing SSO

Test signing into the application by visiting the Login URLs from Clipboard's Service Provider card. Note:

  • We recommend visiting these links in an incognito window or a different browser to test the full sign-in flow

  • Please remember that only Clipboard's Staff List users can sign into the App, and only current students and guardians can sign into the Portal.

You can click this link if you need more help enabling SSO for enterprise applications.

Did this answer your question?