- Log into your Azure portal and open “Azure Active Directory”.
- Select "Enterprise Applications" and click on "New Application"
- Click to switch back to the old app gallery experience (if applicable). Select ‘Non-Gallery Application’

- Provide a display name for your new application. Something descriptive, such as “VAIRKKOAPP” or “VAIRKKO-IDP” and click ‘Add’
- Navigate back to ‘Enterprise Applications’
- Click on the Single 'Setup Single Sign-on ' button.

- Click on the ‘SAML’ button.

- Click on the ‘Upload metadata file’ to upload the file you can download from here.
- Record the ‘App Federation Metadata Url ‘. You need this for setting up the SSO identity
provider configurations.
-
Go to option 3 ‘SAML Signing Certificate’ and click ‘edit’.
-
Provide a notification email address and make sure the SAML Signing Certificate looks as follows:

Adding Users and Groups
- Navigate to the ‘Users and Groups’ tab and click ‘Add user/group’

- Select any user's names that you want to be to signgle sign-on to VAIRKKO
Set Up Claims Mapping
- Click on the ‘Single sign-on' left menu item and click on ‘edit’ in the ‘User Attributes & Claims’

- You will see a screen of claims. Leave the ‘Required claim’ alone and focus on the ‘Additional claims’ section.

- Click on each claim and remove/delete the namespace of the claim so that it is blank.

- Do that for all 4 claims and your claims should now look like this
