« To Business Account SSO configuration: Overview
Riverside for Business accounts can set up SSO (Single-Sign On) authentication with Azure Active Directory, also known as Microsoft Entra ID.
Reach out to your account CSM to get started, then follow the steps below.
Watch a video
Step by step
- Ask your CSM for custom SSO. Be sure to share which SSO provider you use.
- Once your CSM confirms you can connect set-up the SSO, using a computer, log into your Riverside account.
- In the bottom left corner, click the account menu button.
- Click Manage account.
- Under Teams, click SSO.
- Under Choose an identity provider, select Azure.
- Log into the Azure/Entra admin center.
- In the menu on the left, click Applications.
- Choose Enterprise applications.
- At the top of the All applications list, click New application.
- At the top of the Browse Microsoft Entra ID Gallery page, click Create your own application.
- In the Create your own application panel on the right, enter the name
Riverside
. - Under it, choose Integrate any other application you don’t find in the gallery (Non-gallery).
- Click Create.
- On the Riverside | Overview page, under Getting started, click 2. Set up single sign on.
- Under Select a single sign-on method, click SAML.
-
Next to Basic SAML Configuration, click Edit.
- On the Riverside SSO set-up page, under Identifier (Entity ID), copy the text.
- On Azure, on the right, under Basic SAML Configuration, click Add identifier.
- Paste the Identifier (Entity ID).
- On the Riverside SSO set-up page, under Reply URL, copy the text.
- On Azure, under Reply URL, click Add reply URL.
- Paste the Reply URL.
- Click Save.
- Close the Basic SAML Configuration section.
- Next to Attributes & Claims, click Edit.
- Under Required claim, click Unique User Identifier (Name ID).
- Under Manage claim, check that Name identifier format is Email address.
- Next to Source, choose Attribute.
- On the Source attribute menu, choose user.mail.
- Click Save to go back to Attributes & Claims.
- Click Add new claim.
- Under Manage claim, next to Name, type
email
. You must enter this in lowercase letters. - Next to Source, choose Attribute.
- On the Source attribute menu, choose user.mail.
- Click Save to go back to Attributes & Claims.
- Close Attributes and & Claims.
- Scroll down to SAML Certificates and click Edit.
- In the SAML Signing Certificate panel, click the menu next to Signing Option.
-
Select Sign SAML response and assertion and click Save.
- Under SAML Certificates, next to Federation Metadata XML, click Download.
-
On the Riverside SSO set-up page, click Upload XML file and select the federation metadata file from your desktop to upload .
- On Riverside, click Submit.
At the top of the page, you will see a confirmation of the submission. - Log in to Riverside.fm via SSO to confirm the set-up works.
Important - new users:
Anytime a new user is added to the account, they will first need set up their Riverside account using their email and a password. Then, they can sign in using SSO.
You cannot edit the information after submitting it. If you need to make any changes, please contact your CSM. At the top of the page, you will see a confirmation of the submission.