Set up SAML SSO
Last updated: September 9, 2026
SAML SSO allows your team members to log in via your company's Identity Provider (IdP) — for example, Azure AD, Okta, Google Workspace.
Step 1: Retrieve SP Metadata
You can find your SP (Service Provider) Metadata at:
GET /api/v1/auth/saml/metadata/:tenantId
This XML file contains the Entity ID and ACS URL that you need to configure in your IdP.
Step 2: Configure IdP
In your Identity Provider:
- Create a new SAML app
- Enter the SP Entity ID and ACS URL from the metadata
- Configure Attribute Mapping (Email, FirstName, LastName)
- Export IdP Metadata (Entity ID, SSO URL, Certificate)
Step 3: Configure SilentChat
Settings → SAML SSO
| Field | Description |
|---|---|
| IdP Entity ID | Entity ID from IdP Metadata |
| IdP SSO URL | IdP login URL |
| IdP SLO URL | Logout URL (optional) |
| IdP Certificate | X.509 Certificate (PEM format) |
| Enabled | Turn SSO on/off |
Step 4: Test
- Open
/api/v1/auth/saml/login/:tenantId - You will be redirected to the IdP
- After authentication, you will be redirected back to SilentChat
- If successful, you will be logged in