> For the complete documentation index, see [llms.txt](https://docs.statuspal.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.statuspal.io/platform/integrations/configure-sso-for-your-status-page-with-azure-active-directory.md).

# Configure SSO for your status page with Azure Active Directory

Configure SAML SSO for Statuspal using Microsoft Azure Active Directory (Entra ID).

1. In your Statuspal admin, go to your organization's **Security** tab and **download its metadata file**.\
   \
   ![Download Statuspal org metadata](https://4061983002-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FgIMm5p2V7PNx3dS7vwKE%2Fuploads%2Fgit-blob-868f0bd96a5b3d5a80d652c7f95f494d4ed7a6b5%2Fsso-azure-download-metadata.png?alt=media)
2. Sign in to your **Microsoft Azure** account and open **Azure Active Directory** (Entra ID).
3. Click **Enterprise Applications**, then **New application > Create your own application**.
4. Enter the name **Statuspal** and click **Create**.\
   \
   ![Create Azure enterprise app](https://4061983002-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FgIMm5p2V7PNx3dS7vwKE%2Fuploads%2Fgit-blob-59c9ae2daaddcb0ffdfb41d1109c41e62bc22b0e%2Fsso-azure-create-enterprise-app.png?alt=media)
5. Click **Assign users and groups** and assign yourself (you can add the rest of your team later).
6. Click **Single sign-on** in the sidebar and select **SAML**.
7. Click **Upload metadata file**, select the file downloaded in step 1, then click **Add** and **Save**.
8. Reload the page — the **SAML Signing Certificate** section should now be populated.
9. In the **User Attributes & Claims** section, click **Edit** and set the claim name to `user.mail`. Click **Save**.\
   \
   ![Azure user attributes config](https://4061983002-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FgIMm5p2V7PNx3dS7vwKE%2Fuploads%2Fgit-blob-08a964abfeeea3c171691d889d81652501b46b51%2Fsso-azure-user-attributes.png?alt=media)
10. In the **SAML Signing Certificate** section, click **Edit**, set **Signing Option** to **Sign SAML response and assertion**, and click **Save**.\
    \
    ![Azure SAML signing option](https://4061983002-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FgIMm5p2V7PNx3dS7vwKE%2Fuploads%2Fgit-blob-b60b456a0c5e7d50d1ee2dc86cc86fa1839ac5f5%2Fsso-azure-saml-signing-option.png?alt=media)
11. Download the **Federation Metadata XML**, copy its contents, and paste them into your Statuspal organization's **IDP metadata** field. Click **Save**.
12. Click **Test SAML configuration** to verify.\
    \
    ![Successful SAML test](https://4061983002-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FgIMm5p2V7PNx3dS7vwKE%2Fuploads%2Fgit-blob-672bc731e38e28eaf282bcabecfed4fef829f071%2Fsso-saml-test-success.png?alt=media)

{% hint style="success" %}
Once the test passes, check the **Require SSO** checkbox in Statuspal to enforce SSO for all team members.
{% endhint %}
