Skip to content
English
  • There are no suggestions because the search field is empty.

Set Up Single Sign-On (SSO) with Microsoft Entra ID

This article explains how to set up Single Sign-On (SSO) for your organisation using Microsoft Entra ID.

With SSO enabled, your colleagues can log in to Agriplace using their Microsoft work credentials. This simplifies onboarding and improves security.


Before You Start

To configure SSO, you need:

  • A Pro account
  • An active Microsoft Entra ID tenant
  • Admin access to the Entra tenant
  • Owner permissions in your Agriplace account
  • SSO functionality enabled by the Agriplace team (please contact Support if not yet enabled)

Step-by-Step Setup

Step 1 – Start the SSO Setup in Agriplace

  1. Log in to your Agriplace account
  2. Go to Company Settings → Company security
  3. Click Connect Microsoft Entra

You will receive:

  • Entity ID
  • Reply URL

Keep these values ready for the next steps.


Step 2 – Create an Enterprise Application in Microsoft Entra

  1. Go to the Microsoft Entra portal
  2. Navigate to Applications → Enterprise applications
  3. Click + New application
  4. Choose Create your own application
  5. Name it (e.g. “Agriplace – SSO”)
  6. Select Integrate any other application
  7. Click Create

Step 3 – Configure SAML SSO

  1. Open the newly created application
  2. Go to Single sign-on
  3. Choose SAML
  4. Under Basic SAML Configuration, click Edit
  5. Enter the Entity ID and Reply URL from Agriplace
  6. Save your changes

Step 4 – Configure Attributes & Claims

This step ensures correct user mapping (email, name, etc.).

  1. Go to Attributes & Claims
  2. Click Edit
  3. Ensure the following claims are included and properly configured:
    • Email address
    • Name
  4. Enable “Emit claim as a JWT” for:
    • emailaddress
    • name

Make sure:

  • The Unique User Identifier is correctly configured
  • Any conflicting default claims are removed

Without correct claims configuration, users may not be created properly in Agriplace.


Step 5 – Assign Users Access

In the Entra application:

  1. Go to Users and groups
  2. Assign the users (or groups) who should have access

Step 6 – Copy the Metadata URL

  1. In the SAML configuration page, go to SAML Certificates
  2. Copy the App Federation Metadata URL

Step 7 – Complete Setup in Agriplace

  1. Return to Company Settings → Company security → SSO
  2. Click Next
  3. Paste the App Federation Metadata URL
  4. Click Enable

The system will validate the configuration and activate SSO.

You will then receive a dedicated sign-in URL for SSO login.


Domain Verification (Recommended)

After enabling SSO, we strongly recommend verifying your company email domain.

This improves user experience and security.

Why Verify Your Domain?

  • Users are automatically redirected to Microsoft SSO
  • No need to select login methods
  • Prevents other organisations from claiming your domain

How to Verify Your Domain

Step 1 – Add Domain

Go to:

Company Settings → Company security → Domain verification

  1. Enter your company domain (e.g. company.com)
  2. Click Add domain

You will receive a DNS TXT record.


Step 2 – Add DNS Record

  1. Log in to your domain registrar (e.g. GoDaddy, Cloudflare, etc.)
  2. Open DNS settings
  3. Add the provided TXT record
  4. Save changes

DNS updates may take up to 30 minutes.


Step 3 – Verify

Return to Agriplace and click Verify next to your domain.

Once verified, your domain will show as Verified and linked to your organisation.


Troubleshooting

You don’t see the “Connect Microsoft Entra” button

  • Make sure SSO is enabled for your account
  • Ensure you have Owner permissions

SSO setup fails

  • Verify you pasted the correct App Federation Metadata URL

Users are missing name or email

  • Check your Attributes & Claims configuration

For assistance, contact Simvia Support at:

**support@simvia.com**