Articles in this section

Integrating Azure SAML with Dialpad

Azure's single sign-on (SSO) lets you easily log in to Dialpad with your Azure (Microsoft) login. 

Let's dive into the details.

Who can use this

The Azure SAML integration is available to all Dialpad users. 

Refer to our Pricing Page to see if you have access to this feature. If you have questions about your plan, reach out to your Customer Success Manager or Dialpad Customer Care.

You must have an Azure Active Directory subscription that allows the addition of SAML Toolkit SSO. 

Enable SAML In Dialpad

Before enabling this integration, make sure you have SAML permissions.

If you don't see the SAML section in the Authentication section of your Company Settings, please contact Customer Care.

Note

The steps below use an example domain called projectgemma.com. Wherever applicable, substitute this value with the proper domain identifier for your company.

To enable SAML on your account, head to your Dialpad Admin Settings.

  1. Select My Company 
  2. Navigate to Authentication 
  3. Select SAML 
  4. Choose Custom from the 'Choose your provider' menu
    Screenshot of the SAML Configuration page under Dialpad Admin Settings with 'Custom' selected from the 'Choose your provider' dropdown menu.
  5. Take note of the listed SP SSO URL (ACS) and SP Entity ID values

    Screenshot of the Dialpad SAML Configuration (custom) page featuring an orange box highlighting the displayed SP SSO Url (ACS) and SP Entity ID values above blank input fields for IdP settings.

 

Keep this tab open — we'll revisit this page after configuring SAML on Azure.

Configure SAML in Azure

Next, it's time to configure SAML in Azure.

  1. Navigate to the Azure Portal
  2. Select Show portal menu
    • This will open options on the left pane. 
  3. Navigate to Azure Active Directory
    • Ensure that the tenant is correct.
  4. Select Enterprise applications
  5. Select  New application

    Screenshot of the Microsoft Azure Enterprise applications | All applications page featuring a blue arrow pointing to the '+ New application' button on the top toolbar.
  6. Search for, and then select Microsoft Entra SAML Toolkit
    Screenshot of the Browse Microsoft Entra Gallery page featuring blue arrows pointing to the search box populated with 'Microsoft Entra SAML Toolkit' and the resulting 'Microsoft Entra SAML Toolkit' application tile below.
  7. In the pop-up side widow, Name the application
    Screenshot of the Azure AD SAML Toolkit setup side window displaying 'Dialpad SAML' entered in the Name field and a blue 'Create' button in the bottom left corner.
  8. Select Create
    • The page will take a few moments to configure. Once the application is created, you'll be redirected to its main page.
  9. Navigate to the Manage section of the Dialpad SAML application’s main page
  10. Select Single sign-on
  11. Select SAML 
    Screenshot of the Dialpad SAML Single sign-on setup page in Azure, featuring blue arrows pointing to 'Single sign-on' under the Manage section on the left navigation bar and the 'SAML' tile under 'Select a single sign-on method'.
  12. In the basic SAML Configuration tile, select Edit
    Screenshot of section 1, "Basic SAML Configuration," on the Azure "Set up Single Sign-On with SAML" page, featuring a blue arrow pointing to the "Edit" button with a pencil icon located in the top-right corner of the configuration box.
  13. Here, enter the SP SSO URL (ACS) and SP Entity ID attributes from Dialpad 
  14. Next, you'll need to provide values for the three mapped attributes, as detailed below.

    Azure Attribute Mapped Dialpad Attribute 
    Identifier (Entity ID) SP Entity ID 
    Replay URL (Assertion Consumer Service URL) SP SSO URL (ACS)
    Sign On URL  https://dialpad.com/auth/saml/request?domain=projectgemma.com&source=web
    *Use your domain in lieu of projectgemma.com 
  15. Select Save

    Screenshot of the Basic SAML Configuration pane in Microsoft Azure with populated Identifier, Reply URL, and Sign on URL fields highlighted in orange boxes, along with an orange box around the 'Save' button on the top toolbar.

  16. On the resulting page, select Add new claim

    Screenshot of the Azure User Attributes & Claims page featuring a blue arrow pointing to the '+ Add new claim' button on the top toolbar.
    • In the Name field, enter Email 
    • In the Source attribute field, enter user.mail
      Screenshot of the Azure Manage claim page featuring a blue arrow pointing to 'Email' entered in the Name field and 'user.mail' entered in the Source attribute field.

     

  17. Select Save
    • Under User Attributes & Claims, you'll now see the newly added claim.

      Screenshot of the Azure User Attributes & Claims page featuring a blue arrow pointing to the newly added 'Email' claim mapped to 'user.mail' under the Additional claims section.
  18. Back on the Setup Single Sign-On with SAML page, locate the Certificate (Base64) attribute in the SAML Signing Certificate tile
  19. Select Download
  20. On the Set up Azure AD SAML Toolkit tile, take note of the values against Login URL and Microsoft Entra Identifier 

    Screenshot of the 'Set up Dialpad SAML' configuration tile in Azure displaying read-only fields for Login URL, Microsoft Entra Identifier, and Logout URL, each with a copy button.
  21. Switch back to the Dialpad SAML Configuration page. Here, populate the remaining attributes with the values obtained from steps 13 and 14 in this section.

    Azure Attribute Mapped Dialpad Attribute 
    Login URL (from step 14) IdP SSO URL 
    Microsoft Entra Identifier IdP Entity ID (Issuer)
    Certificate(Base64) (Downloaded) Certificate

  22. Select Save

    Screenshot of the Dialpad SAML Configuration (custom) page with orange boxes highlighting the populated IdP SSO Url, IdP Entity ID (Issuer), and Certificate text area, along with a purple 'Save' button below.

Assign a user in Azure 

To assign a user in Azure:

  1. Navigate to the configured enterprise application (it's called Dialpad SAML in the screenshot below)
  2. Select Users and Groups 
  3. Select Add user/group

    Screenshot of the Dialpad SAML Users and groups page in Azure with blue arrows pointing to 'Users and groups' under the Manage section on the left navigation bar and the '+ Add user/group' button on the top toolbar.

  4. Choose a user to test out the SAML-based login, then select Assign

    Screenshot of the Azure Users selection pane showing 'testuser' entered in the search field and 'Test User' selected under the 'Selected items' list, with a blue 'Select' button at the bottom left.

  5.   The user should now be listed in the main page, as shown below

Screenshot of the Dialpad SAML Users and groups page in Azure displaying 'Test User' successfully added to the user assignment table.

 

Test user login

Now that Azure SAML has been configured, it's time to test it.

  1. Head to https://www.dialpad.com/login 
  2. Select  Log in with another provider

    Screenshot of the Dialpad login page featuring an orange box and arrow highlighting the 'Log in with another provider' link situated beneath the Google and Microsoft login options.

  3. Enter the domain of your company

    Screenshot of the Dialpad 'Login With Another Provider' screen displaying 'projectgemma.com' entered into the domain text box, above 'Cancel' and purple 'Next' buttons.

  4. Select Next

    That's it! You'll be redirected to Microsoft Login for authentication. After entering your credentials, you should be logged into Dialpad via SAML.

Enforcing SAML-based SSO 

Add an extra level of security by blocking your users from using other SSO providers when logging into Dialpad. 

To restrict the use of other authentication providers, navigate to your Admin Settings at Dialpad.com

  1. Select My Company
    Screenshot of the Dialpad Admin settings panel with an orange arrow and boxes highlighting the gear settings icon on the left menu and 'My company' in the top-left dropdown menu.
  2. Navigate to Authentication
  3. Select SAML
  4. Select Prevent users from logging in with other SSO providers
    Screenshot of the Dialpad SAML Configuration (custom) page featuring orange boxes highlighting the selected 'SAML' tab under Authentication and the checked 'Prevent users from logging in with other SSO providers' option above the Save button.
  5. Select Save 

Once saved, your users won't be able to use Microsoft and Google SSO (or even their username and password) to log in to Dialpad.

Was this article helpful?
0 out of 0 found this helpful

Comments

0 comments

Article is closed for comments.