SAML Integration
Supported Features
IDP initiated sign-in (sign in from Microsoft)
SP initiated sign-in (sign in via Microsoft from BrightHire)
Requirements
To set up BrightHire user provisioning with Microsoft, you'll need to have access to the Microsoft Azure AD Admin account
Configuration Steps (Microsoft Azure AD)
Head here to create a new application: https://portal.azure.com/#view/Microsoft_AAD_IAM/AppGalleryBladeV2
Click "Create a new application"
Type "BrightHire - SAML" as the name
Click "Create"
On your new app, click "Single Sign On"
Click "SAML"
In box 1
Click "Edit"
Click "Add Identifier" and add "https://app.brighthire.ai
Click "Add reply url" and add https://app.brighthire.ai/saml/sso/<your_domain_name> (like customer.com)
Click "Save"
In box 2
Click "Edit"
Click on each attribute line item and edit them until they look like the
screenshot below - remove namespaces
Click "Save"
Configuration Steps (BrightHire)
Copy your App Federation Metadata URL
Visit this page in BrightHire: https://app.brighthire.ai/settings/sso
In the Unique Identifier field, type in <your_domain_name> that you used at the end of your reply URL above. This looks like "customer.com".
In the Metadata URL field, type in the metadata url
Click "Save"
Test it out on the Microsoft side!
Test out BrightHire initiated login from our login page https://app.brighthire.ai/sign-in


