SSO ( Single Sign-On ) is a secure authentication method that allows a user to log in without having to repeat the process multiple times. Cloud8 currently supports the following platforms:
- Azure AD
- AWS SSO
- Google Suite
- Github
- Centrify/CyberArk
- JumpCloud
- Okta
To enable Azure Single Sign-On (SSO) on the Cloud8 Platform using Active Directory (AD), the user must send us an XML file and 3 URLs, generated directly from the Azure interface.
Setting up SSO in Azure AD #
The steps to generate and configure these assets are as follows:
- Access the Azure Portal;
- Search for Microsoft Login ID;
- Click on Enterprise Application to configure SAML-based SSO;
- Clique em “Create your own application”.
- Select the “Non-gallery application” option.
- Give the application a name and click “Create”.

Select the created application, and in the left sidebar menu click on “Single sign-on”. Choose the SAML option.

Next, click the edit icon in “Basic SAML Configuration” (Item 1 of the Panel).

The Identifier is a unique ID used to identify the application in Microsoft Login ID . Cloud8 suggests adopting the following naming convention:
“https://sso.webpanel.cloud/azure/NOME_DO_APP“
The Reply URL is where the application expects the authentication and token, along with the assertion, to be sent. Just like with the Identifier, Cloud8 will provide a URL to be used as the URL Assertion in the “Reply URL” option, in the following format:
“https://sso.webpanel.cloud/azure/NOME_DO_APP“

Next, click “ Save ” to save the configuration. Then, click “ No, I’ll test later ”.

Next, add the users who will be using SSO and click “Assign”.

In SAML Certificates (Item 3 of the Panel), find the option “ Federation Metadata XML ” and click “Download”.

In the ” Set up ” section (Item 4 of the Panel), you will need to copy each of the URLs below and submit them in the next step.

Finalizing SSO configuration in Azure AD #
After configuring SSO, send an email to support@cloud8.io with the subject “Enable Azure SSO” and provide the following information:
- Identifier defined in Basic SAML Configuration
- Login URL, Microsoft Entra Identifier e Logout URL do Set up
- Federation Metadata XML exported in SAML Signing Certificate
IMPORTANT! Don’t forget to identify your Cloud8 account in the email that will need to be configured with Azure SSO, if you have more than one configured.