Guide

How to setup SSO with Azure Active Directory

BlueTally lets you save time and headaches with our Single Sign-on integration with Azure Active Directory, that lets your team members log in and use the app without the need to manually create accounts and new passwords.

Log in to your Azure account

1
Click on "Azure Active Directory"
SCIM with Azure Active Directory Integration | BlueTally™
2
Click on "Enterprise applications" in the left menu bar
SCIM with Azure Active Directory Integration | BlueTally™
3
Click on "New application"
SCIM with Azure Active Directory Integration | BlueTally™
4
Click on "Create your own application"
SCIM with Azure Active Directory Integration | BlueTally™
5
Enter a name for the application (such as 'BlueTally SAML SSO'), select the "Integrate any other..." option and click "Create"
SSO with Azure Active Directory | BlueTally
6
Scroll down and click on "Single sign-on" in the left menu bar
SSO with Azure Active Directory | BlueTally
7
Click on "SAML"
SSO with Azure Active Directory | BlueTally
8
Click on "Edit"
SSO with Azure Active Directory | BlueTally
9
Click on Add Identifier and enter "https://bluetallyapp.com", and click on Add reply URL and add "https://app.bluetallyapp.com/users/auth/saml_SSOID/callback" (replace SSOID with the SSO ID from your BlueTally Account Settings), then click on Save
SSO with Azure Active Directory | BlueTally
10
Scroll down on the page and click on Edit
SSO with Azure Active Directory | BlueTally
11
Click on this
SSO with Azure Active Directory | BlueTally
12
Click on the "Source attribute" field, change the value to "user.mail" and click on Save
SSO with Azure Active Directory | BlueTally
13
Click on this
SSO with Azure Active Directory | BlueTally
14
Change the "Name" value to "first_name", remove the text from the "Namespace" field and click on Save
SSO with Azure Active Directory | BlueTally
15
Click on this
SSO with Azure Active Directory | BlueTally
16
Change the "Name" value to "last_name", remove the text from the "Namespace" field and click on Save
SSO with Azure Active Directory | BlueTally
17
Scroll down and download the "Certificate (Base64)" and copy the "Login URL".
SSO with Azure Active Directory | BlueTally
18
Go to your BlueTally account settings and paste in the "Login URL", upload the "Certificate (Base64)" and decide on which role you'd like new users to have by default.
SSO with Azure Active Directory | BlueTally

That's it! Once you upload these details into your account settings, we'll complete the setup on our end - this can take up to 24 hours. You'll receive an email when everything is ready.

Once SSO has been setup on your account, giving new users access to BlueTally will be done in the Azure AD application you just created. The same goes for removing user access. New users will only appear in the Account User list in BlueTally after they've signed in for the first time.

If you have any questions regarding this integration, send us an email to support@bluetallyapp.com and we'll assist you with your setup!

You can also receive notifications directly to Microsoft Teams and Slack, integrate BlueTally with Intune or Active Directory, or into your existing workflows by using our powerful API.