Logz.io offers a quick integration for SSO with Azure.

To set up single sign-on for Azure

Request SSO access from Logz.io

Only account admins can request single sign-on access for their accounts.

To kick off this process, send an email to help@logz.io. Write that you want to set up Azure SAML SSO for Logz.io. Include these items in the message:

The Support team will respond with the connection information you’ll need to give in Azure.

Log into your Azure Portal and follow the instructions in Azure’s docs for adding the Logz.io - Azure AD Integration from the Gallery.

Configure the integration

When you get to the step Set up single sign-on with SAML, you’ll need the SAML information you received from Logz.io Support’s email.

  • The Audience URI from Logz.io is the SAML Identifier (Entity ID).
  • The Single sign on URL from Logz.io is the SAML Reply URL (Assertion Consumer Service URL).
Zip the SAML certificate

In the SAML Signing Certificate section of the page, click the Certificate (Base64) download link (next to the certificate).

Download the certificate file and zip it. You’ll need to email this zip file to the Logz.io Support team in the next step.

SAML Certificate

Save your configuration.

Send your SAML details to Logz.io

Draft a new email to Support, and include these items:

  • Your zipped SAML Signing Certificate (from the previous step).
  • Your SAML-P SIGN-ON ENDPOINT. This is your Azure Login URL.

    Azure SAML-P SIGN-ON ENDPOINT

Configure Azure to send user groups

Return to the App registrations page in your Azure Portal. If you don’t see Logz.io, click View all applications.

Open the Logz.io application, and then click Manifest. In the manifest JSON, set groupMembershipClaims to "All". Click Save (top of the page).

(Optional) Restrict access to Logz.io to specific user groups

Add group

By default, all Azure users with Logz.io access can sign in to your Logz.io accounts.

You can restrict this access from the Manage users page for each of your accounts. Click Add group, and then paste the group’s Object ID from Azure for each group that should have access to the account in Logz.io.

Receive confirmation from Support

When Support has created your Azure + Logz.io connection, you’re done! You can start logging in to Logz.io through your Azure Apps portal.