Enterprise Edition
Configuring SAML SSO with Entra ID (formerly Azure AD)
-
Last updated: July 16, 2024
-
Read time: 2 Minutes
This section explains how to configure SAML SSO using Entra ID (formerly Azure AD) as your identity provider. You may also need to refer to the Entra ID documentation.
Before you start
Make sure your web server URL includes protocol and port information. For more information, see Configuring your web server.
Note
The relying party trust information is dependent on your web server URL.
Step 1: Add Burp Suite Enterprise Edition to your trusted applications
To add Burp Suite Enterprise Edition to your trusted applications:
- Log in to Burp Suite Enterprise Edition as an administrator.
- From the settings menu , select Integrations.
- On the SAML tile, click Configure. Notice that you can copy both the Relying party trust identifier and the Relying party service URL.
- In Entra ID, go to Basic SAML Configuration.
- Paste the Relying party service URL into the Reply URL (Assertion Consumer Service URL) field.
- Paste the Relying party trust identifier into the Identifier (Entity ID) field.
Step 2: Import key details from Entra ID
To configure Burp Suite Enterprise Edition, you need to import some key details from Entra ID (formerly Azure AD):
- In Entra ID, go to the SAML Signing Certificate page.
- Download the Federation Metadata XML file.
- In Burp Suite Enterprise Edition, make sure that you're still on the SAML page.
- In Company details, enter your company name.
- In SAML configuration, click Import metadata.
- Click Choose file and select the Federation metadata XML file.
- Click Save.
Step 3: Test your configuration
Once the connection is successfully established, we recommend that you test your configuration by logging in to Burp Suite Enterprise Edition. If the configuration was successful, you will see a message that you have logged in, but you don't yet have permission to do anything.
Managing groups
You can now configure how you manage your groups:
- You can push the groups from your identity provider using SCIM. For more information, see Configuring SCIM.
- Alternatively, you can duplicate your Entra ID groups in Burp Suite Enterprise Edition, and manage them locally. For more information, see Enabling Burp Suite Enterprise Edition to access your Entra ID groups