This guide is for Entra ID administrators. Replace {your-portal-domain} with your Marvia portal host, for example acme.getmarvia.com. Marvia connects to Microsoft Entra ID using SAML 2.0. OpenID Connect is not used for this integration.
Create an Enterprise Application in Microsoft Entra ID, then send Marvia the values listed at the end of this page. After we save them, users can sign in with the SSO button on your Marvia login page.
1. Create the Enterprise Application
In the Microsoft Entra admin center (entra.microsoft.com), navigate to Identity → Applications → Enterprise applications.
Click + New application, then select + Create your own application.
Enter a name for your app, for example
Marvia.Select Integrate any other application you don't find in the gallery (Non-gallery) and click Create.
2. Configure SAML Settings
In your new application's menu, select Single sign-on and select SAML.
In section 1. Basic SAML Configuration, click Edit and enter these values:
Entra ID field | Value |
Identifier (Entity ID) |
|
Reply URL (Assertion Consumer Service URL) |
|
Sign on URL |
|
(Optional) You can also click Upload metadata file at the top of the section and import Marvia's metadata from: https://{your-portal-domain}/saml/metadata
3. Attributes & Claims
In section 2. Attributes & Claims, click Edit. Marvia expects standard claims mapped to user profile properties.
User Claims
Ensure the following claim mappings are configured (edit existing default claims or add missing ones):
Claim name | Value / Source attribute |
|
|
|
|
|
|
Note: Ensure the Namespace field is left blank for these claims so the sent claim name is exact.
Groups (optional)
If users should be placed in Marvia groups automatically:
Click + Add a group claim.
Choose Security groups (or Directory roles / All groups as needed by your organization).
Set the Source attribute to Group ID (or Group display name depending on your Marvia setup).
Set the Claim name to
groups.
Locations (optional)
If you use location or branch access in Marvia, add a claim named locations:
Claim name | Value / Source attribute |
| The Entra ID user profile attribute that holds the location or office name (e.g., |
4. Assign Users and Groups
Under the app menu, select Users and groups.
Click + Add user/group and select the users or groups that should be granted access to sign in to Marvia.
5. Send these values to Marvia
In section 3. SAML Certificates and section 4. Set up Marvia, copy the following values and send them to your Marvia support representative:
Microsoft Entra Identifier (Entity ID)
Login URL (Identity Provider Single Sign-On URL)
Certificate (Base64): Download the Certificate (Base64) file, open it in a text editor, and copy the full text including the
-----BEGIN CERTIFICATE-----and-----END CERTIFICATE-----lines.Logout URL (Optional, if you use single logout)
Once we have saved these on our side, users can sign in with the SSO button on your Marvia login page.
