In this procedure, you will configure Azure AD as an SAML Identity provider, and create and configure an Authentication server on an SMA appliance.
To configure Azure AD as an SAML Identity provider, do the following
Under Identity Provider Configuration, click Choose File and select the downloaded metadata.xml in
All the IDP configuration fields are filled with the respective values including IDP certificate.
Options Server ID, Authentication service URL and Trust the following certificate should be
automatically filled based on uploaded file.
When you are importing the metadata file under authentication server, the CA certificate for SAML verification is enabled by default. In addition, the imported CA certificates under SSL Settings > CA Certificate with SAML verification enabled will be displayed.
The Logout service URL field is for logging out IDP and SAML together. However if you can keep this field empty, so that the IDP remains active and only SAML application gets logged out.
Click Save.