Skip to main content
This guide explains how to connect Yuno to Microsoft Entra ID (formerly Azure Active Directory) using SAML 2.0.

Prerequisites

  • A Microsoft Entra ID tenant
  • An application for use with Yuno
  • Entra ID admin privileges to manage SSO settings
  • Access to the Yuno dashboard
1

Configure the basic SAML settings

First, go to the dashboard and click your profile image, then open Security. Navigate to the Single Sign-On (SSO) tab, click Set up and gather this info:
  • Identifier (Entity ID)
  • Assertion Consumer Service URL
Yuno dashboard 'Set up SSO in Yuno' panel showing the identity provider set to Microsoft, with the Identifier (Entity ID) and Assertion Consumer Service URL fields to copy into the identity provider
In Microsoft Entra ID, go to:Enterprise applications → All applications → Your application → Single sign-onUnder Basic SAML configuration, enter the values from the Yuno dashboard.
Microsoft Entra ID enterprise application Single sign-on page showing the Basic SAML Configuration section with Identifier (Entity ID) and Reply URL (Assertion Consumer Service URL) fields highlighted, plus the Attributes & Claims and SAML Certificates sections below
2

Export and upload the federation metadata XML

In Microsoft Entra ID, navigate to the SAML certificates section and download the Federation Metadata XML file.
Microsoft Entra ID SAML Certificates section with the Federation Metadata XML download link highlighted, used to export the metadata file for Yuno
Then, in the Yuno dashboard:
  1. Upload the XML file under Yuno configuration → Option A: Upload metadata XML
  2. Wait for the Upload completed confirmation
  3. Click Save
Yuno dashboard 'Yuno configuration' step 3 showing Option A with the federation metadata XML file uploaded and marked 'Upload completed', and the Cancel and Save buttons
Alternatively, you can take the information listed in Option B and enter it manually.
3

Verify SAML certificate settings

In Microsoft Entra ID, open SAML certificates and make sure:
  • The signing option is Sign SAML response and assertion
  • The signing algorithm is SHA-256
Click Save to apply the changes.

Troubleshooting

If you cannot set up the SSO connection or run into issues after initial configuration:
  • Remember Yuno requires signed SAML responses, check:
    • Both the SAML response and the assertion are signed
    • The signing algorithm is SHA-256
    • The signing certificate matches the one uploaded to Yuno
  • Review SSO logs in the Yuno dashboard under Security → Single sign-on (SSO)