This guide explains how to configure Microsoft Entra ID (formerly Azure Active Directory) for Single Sign-On (SSO) without automatic user provisioning. Users will log in with their Entra ID credentials, but their accounts will be managed in Axero.
To enable automatic user provisioning, see the Setup Guide for SCIM Provisioning.
Before you start, ensure you have:
Important: Adjusting these settings will help prevent potential errors during user creation and login. Ensure your site URL is finalized before proceeding, as changing it later requires Enhanced Support assistance and reconfiguration of SSO integrations.
https://your-axero-site.com
/SAML/AssertionConsumerService.aspx
https://your-axero-site.com/SAML/AssertionConsumerService.aspx
/login
https://your-axero-site.com/login
Microsoft Entra ID includes three default claims that Axero requires:
You can configure claims to map additional user profile information from Entra ID to Axero. These attributes will be updated each time a user logs in via SSO.
Streamline your SAML attribute mapping process with our Data Mapping Worksheet. This template includes pre-configured examples and Axero field mappings.
Quick Start: Click File → Make a copy to create your own editable version of the worksheet.
Commonly used attributes:
User syncing enables automatic updates of user profile information from Entra ID to Axero at scheduled intervals, without requiring users to log in. This feature is necessary for synchronizing manager relationships and profile pictures, and provides a more comprehensive alternative to login-only attribute updates.
Axero can automatically assign and remove user roles based on attributes from Entra ID. This enables dynamic role management where user permissions are controlled centrally in Entra ID and synchronized to Axero during login.
is requesting access to a wiki that you have locked: https://my.axerosolutions.com/spaces/5/axero-documentation/wiki/view/101873/setup-guide-entra-id-saml-sso
Your session has expired. You are being logged out.