Here's how to configure SAML SSO on your WeTransfer Enterprise account. Please note that SSO and SCIM is available only for users on an Enterprise plan. If you'd like to know more, don't hesitate to request a quote to our Sales team.
Create a new enterprise application for WeTransfer
You can skip this step if you have already created one.
- Open Azure and proceed to Enterprise applications → New application.
- Create your own application → name the app and select “Integrate any other application you don't find in the gallery (Non-gallery)” from the checkbox menu under “What are you looking to do with your application?”.
Add new SSO configuration
- Open the WeTransfer application configuration page and select “Single sign-on” from the menu on the left.
- Select “SAML” from the given options.
- Click “Edit” on the first step of the configuration called “Basic SAML Configuration”.
- Fill out the “Entity ID” and “Assertion Consumer Service URL” (ACS URL) which you can find on the SSO and SCIM tab on the WeTransfer page. Note that these settings are only accessible by team administrators.
- Save this part of the configuration.
You can find the fields referred to in this guide in the image below. The first box shows the settings that you just configured.
Provide Microsoft Azure details to WeTransfer
Open the SSO and SCIM tab on the WeTransfer page. You need to provide “SSO URL” and “Certificate” before enabling SSO. First, add the SSO URL:
- From the “Single sign-on” page on Microsoft Azure, copy the “Login URL” shown in step 4 of the configuration.
- Paste it in the "SSO URL" field on the WeTransfer page.
Next, add the certificate provided by Microsoft Azure:
- In the third step of the configuration called “SAML Certificates”, find “Certificate (Base64)” and download it with the button on the right.
- Copy the content of the file to the “Certificate” field on the SSO and SCIM configuration page on WeTransfer.
- Press “Save and Enable” or “Update” to save the configuration and enable SSO.
Test the configuration
That should be enough! From now on, all non-admin members of your team will be redirected to Microsoft to log in. You can also test the configuration by clicking on the button in step 5 of the configuration on the Microsoft Azure page.
Errors, feedback?
This is a brand-new feature at WeTransfer, so we appreciate any feedback. Feel free to reach to us with any problems or suggestions for improvements. We will do our best to assist you as quickly as possible.