Switch from OIDC-based to SAML-based

Becker, Steffen 1 Reputation point
2022-12-11T08:36:27.26+00:00

Hi,
our Azure admin created an Enterprise Application for me.
Now I see, under "Single Sign-on" it is "OIDC-based". But I require "SAML-based".
How can I change this?

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
22,193 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Ian McMorran 5 Reputation points
    2023-05-25T18:15:32.05+00:00

    The short answer is that you can't use the app in the Microsoft Enterprise Applications gallery. You have to click New Application, then Create you own application. After that you can set up SAML.

    Details:

    I had to contact MSFT support who sent me a SmartSheet article (that never appeared for me after multiple searches and even contacting SmartSheet support!). Here's the link with detailed instructions: https://help.smartsheet.com/articles/2482713-azure-oidc-saml#toc-configure-azure-for-saml-with-smartsheet

    1 person found this answer helpful.
    0 comments No comments

  2. Givary-MSFT 33,311 Reputation points Microsoft Employee
    2022-12-13T16:24:23.94+00:00

    @Becker, Steffen Thank you for reaching out to us, As I understand you want to change the application sign on from OIDC to SAML based, you can check with your Azure Admin ( Global Admin ) what kind of Single Sign on method application supports, if it supports SAML based that can be changed from Single sign on blade.

    If you have required access like Cloud Application Administrator or Application Administrator roles (https://learn.microsoft.com/en-us/azure/active-directory/roles/delegate-by-task#:~:text=Create%20enterprise%20applications) you can try changing the same from single sign on blade.

    Also below flowchart can help you decide which SSO method is best for your situation.

    270203-image.png

    Reference: https://learn.microsoft.com/en-us/azure/active-directory/manage-apps/plan-sso-deployment#:~:text=The%20following%20SSO%20protocols%20are%20available%20to%20use%3A

    Let me know if you have any further questions, please feel free to post back.

    Please remember to "Accept Answer" if answer helped, so that others in the community facing similar issues can easily find the solution.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.