SSO is an add-on feature with OnRamp. Please contact Customer Success or support@onramp.us for more information.
Navigate to SSO Settings
2. Toggle on SAML and get required setup data
Toggle on âEnforce SAML SSOâ and note the âAssertion Consumer Service URLâ and âSAML Entity IDâ. Youâll need those in a moment (donât exit out of this page yet):
3. Create your new Enterprise Application
Navigate to your Azure Active Directory, Click âEnterprise Applicationsâ in the sidebar on the right, and then click the âNew Applicationâ button:
4. Create a new application using certain settings
In the screen that comes now, click the button that says âCreate your own applicationâ, then in the popover screen, when it asks for a name, type âOnRamp SAML SSOâ or whatever makes sense for your organization, then choose the option that says âIntegrate any other application you donât find in the gallery (Non-gallery)â. Finally, click create:
5. Configure SAML SSO in your enterprise application
In the screen that follows, click the âGet Startedâ link in the âSet up single sign onâ box, then choose the âSAMLâ option for SSO option in the following screen:
6. Enter the OnRamp SAML configuration into the application
Now, youâre on the configuration page. In the box marked Basic SAML Configuration, click the âEditâ button:
Then, take the Entity ID and Assertion Consumer Service URLs you got from the OnRamp application earlier, and add them into the configuration, using the links shown in the screenshot:
Finally, hit save:
7. Finish setting up the SAML connection in OnRamp
First, get the App Federation Metadata Url by going to the section labeled SAML Signing Certificate and copying the URL:
Go back to OnRamp and enter the URL you just copied into the field marked âSAML Metadata URLâ and click âEnable SAML SSOâ:
After a minute, you should get a notification in the top right corner of your application that says something along the lines of âSAML SSO Enabledâ.
NOTE: Users must log in to their account via app.onramp.us. Logging in through Azure directly (IdP initiated login) is not supported.
Congrats, SSO is now enabled in OnRamp. Please add any users you wish to use this connection to your application in Azure and to OnRamp.