On LibraCyber Email Archiver you can be configure SAML Authentication for the users
New Application
Go to: https://entra.microsoft.com > Application > Enterprise Applications > New Application
Create SAML App following steps
Select Single Sign-on scope
Select SAML as SSO method
SAML edit configuration
Configure basic SAML
-
Add Identificator => EA_FQDN "ex: https://ivan-debian-dev.archiver.esvacloud.com"
-
Add reply URL "Mandatory", in this phase is not available so place temporary EA_FQDN, to be replaced later
- SAVE
Application registration
Go to: https://entra.microsoft.com > Enterprise Applications > Permissions > Application registration
M365 Auth Configuration
Make sure the 365 configuration is completed Configure Office 365 AuthenticationConfigure Users M365 SAML in the Email Archiver
Go to the EmailArchiver > Appliance > Integrations > SAML for users
Identity Provider data
- Go to: https://entra.microsoft.com > Enterprise Applications > look up for the newly registered SAML application
- Click
Single sign-on -
Copy elements (4.1), (4.2), (4.3) to EA SAML configuration (4.1), (4.2), (4.3)
- Edit SAML configuration
-
Download certificate and upload on X509 public certificate section
- SAVE
Update reply url
Paste url into 365 config
Add allowed users
-
Users and groups > Add user/group
-
Add user
-
Select allowed users
-
NB: list of allowed users must be the same of list of users configured into Microsoft 365 authentication.
TEST authentication