A. Creating an App Integration
To enable SAML integration, you need to create a new App integration through the Microsoft Entra admin centre. Here are the steps for a new App integration in Microsoft Entra:
- Visit the Microsoft Entra admin centre and select the Enterprise applications tab.
- Then click the "New Application" tab.
- Search for "SAML Toolkit" in the application search field and click "SAML Toolkit" on the search results page.
- A popup will appear and in the Name column, you can update the name according to the Mekari Product name that you are using. For example: "Talenta". After that, you can click "Create" to create App integration and you will be directed to the application page.
B. SAML Configuration Process
Before setting up SAML integration in Okta, you need to send SAML configuration data to Mekari specialist/activation team to be able to process the integration settings in Mekari Account. Here are the steps:
- You can go to the Single sign-on tab.
- Then select SAML.
- Scroll down the page and click "Download" on the Federation Metadata XML section, to get the XML file with the same name as your application. After that, you can send the XML file to the Mekari specialist/activation team who assisted you in this integration process.
C. Integration of Mekari Account with Microsoft Entra (Azure ID)
Once you get the configuration data, you can proceed to the integration stage between Mekari Account and Microsoft Entra. Here are the steps:
- In the email that you received from the Mekari team, you will get an SAML metadata url which you can download and save as an XML file by adding extension .xml on the downloaded file. Then you can upload the XML file by clicking the “Upload metadata file” button.
- Currently Mekari Account does not support Relay State and Logout Url, so you can leave both fields blank.
- Values for fields below are provided by Talenta. You may either enter those values manually by clicking “Add”, or upload a pre-configured SAML metadata file if provided by Talenta by clicking “folder icon”. - In the Attributes & Claims section, you need to make sure that the Unique User Identifier field is pointing to user attribute data that has the same value as the email address field that you entered during the Invitation of the Mekari product.
For example, in the picture below, the attribute "user.userprincipalname" points to the user's email address that is also used in Talenta.
- After completing the integration set up process, you can confirm whether the integration process has run well or not.