« To Business Account SSO configuration: Overview
Riverside for Business accounts can set up SSO (Single-Sign On) authentication with Azure Active Directory, also known as Microsoft Entra ID.
Reach out to your account CSM to get started, then follow the steps below.
Step by step
- Ask your CSM for custom SSO. Be sure to share which SSO provider you use.
- Once your CSM confirms, you can connect set-up the SSO, using a computer, log into your Riverside account.
- In the bottom left corner, click the account menu button.
- Click
Settings.
- Under Teams, click SSO.
- Under Choose an identity provider, select Azure.
- Log into the Azure/Entra admin center.
- In the menu on the left, click Applications.
- Choose Enterprise applications.
- At the top of the All applications list, click New application.
- At the top of the Browse Microsoft Entra ID Gallery page, click
Create your own application.
- In the Create your own application panel on the right, enter the name
Riverside. - Under it, choose Integrate any other application you don’t find in the gallery (Non-gallery).
- Click Create.
- On the Riverside | Overview page, under Getting started, click 2. Set up single sign on.
- Under Select a single sign-on method, click
SAML.
- Next to Basic SAML Configuration, click
Edit.
- On the Riverside SSO set-up page, under Identifier (Entity ID), copy the text.
- On Azure, on the right, under Basic SAML Configuration, click Add identifier.
- Paste the Identifier (Entity ID).
- On the Riverside SSO set-up page, under Reply URL, copy the text.
- On Azure, under Reply URL, click Add replyURL.
- Paste the Reply URL.
-
Click
Save.
- Close the Basic SAML Configuration section.
- Next to Attributes & Claims, click
Edit.
- Under Required claim, click Unique User Identifier (Name ID).
- Under Manage claim, check that Name identifier format is Email address.
- Next to Source, choose Attribute.
- On the Source attribute menu, choose user.mail.
- Click
Save to go back to Attributes & Claims.
- Click
Add new claim.
- Under Manage claim, next to Name, type
email. You must enter this in lowercase letters. - Next to Source, choose Attribute.
- On the Source attribute menu, choose user.mail.
- Click
Save to go back to Attributes & Claims.
- Close Attributes and & Claims.
- Scroll down to SAML Certificates and click
Edit.
- Next to Expiration add a valid (not expired) date. As a best practice, the expiration date should be set to the end of your Riverside contract term to avoid interruptions.
- In the SAML Signing Certificate panel, click the menu next to Signing Option.
-
Select Sign SAML response and assertion and click
Save.
- Under SAML Certificates, next to Federation Metadata XML, click Download.
- On the Riverside SSO set-up page, click Upload XML file and select the federation metadata file from your desktop to upload .
- On Riverside, click Submit.
At the top of the page, you will see a confirmation of the submission. - Log in to Riverside via SSO to confirm the set-up works.
Good to know
- You cannot edit the information after submitting it. If you need to make any changes, please contact your CSM.
- All new users invited to the account should follow these steps login with SSO.