How to set up Microsoft Entra SSO for your School using the new SAML process

Select enterprise application

Summary

  • Create a new Enterprise Application in the Microsoft Entra portal, assign your staff and student groups, and collect the Object ID for each group to share with ClickView Support.
  • Exchange two emails with ClickView Support: first to receive your school-specific Identifier and Reply URL, then to share your Base64 certificate, Login URL, and Microsoft Entra Identifier
  • Configure your SAML settings, including the Identifier, Reply URL, and Logout URL, then set the Name ID format to Persistent using user.objectid as the source attribute.
  • Add a group claim in the Attributes & Claims tile by selecting Groups assigned to the application with the Group ID option, so ClickView can identify user roles and grade levels.
  • Share each group’s Object ID and its corresponding grade level with ClickView Support so they can configure value parsing before your users begin signing in.
star icon
Quick tip
How do I set up Microsoft Entra SAML SSO for ClickView at my school?
To set up SAML SSO for ClickView, create a custom Enterprise Application in the Microsoft Entra portal, assign your staff and student groups, and send your group Object IDs to ClickView Support to receive your school-specific Identifier and Reply URL. After configuring your SAML settings and downloading the Base64 certificate, share it along with your Login URL and Microsoft Entra Identifier with Support to complete the connection. Once ClickView Support confirms the setup on their end, staff and students can sign in to ClickView at clickview.net using their existing Microsoft credentials.

This guide walks IT administrators through connecting ClickView to their Microsoft Entra environment using SAML-based Single Sign-On. Once complete, staff and students can access ClickView using their existing Microsoft credentials.

Before you start: This setup requires email exchanges with ClickView Support at defined points. Each phase builds on the last, so work through them in order.

  • Phase I: Create the ClickView app in Entra and assign user groups
  • Phase II: Configure SAML single sign-on
  • Phase III: Set user attributes and claims to complete the integration

Phase I: Creating the application

Step 1: Create a new Enterprise Application

  1. Within Enterprise applications, select + New application.
    Select new application
  2. Select + Create your own application.
    Select Create your own application.
  3. In What’s the name of your app?, enter ClickView. Select Integrate any other application you don’t find in the gallery (Non-gallery), then select Create.
    Enter ClickView and select Integrate any other application

Step 2: Assign users and groups

  1. Under the application’s menu, select Assign users and groups, then select + Add user/group.
    Select Assign users and groups, then select Add user/group.
  2. Select the None Selected option.
    Select the None Selected option.
  3. Select all the staff and student groups to be assigned to the ClickView app, select Select, then select Assign.
    select Select, then select Assign.
    Users and groups assigned

All assigned staff and student groups now have access to the ClickView application through SSO.

 All assigned staff and student groups now have access to the ClickView application through SSO.

Step 3: Collect Group Object IDs

ClickView Support needs the Object ID of each group you assigned.

  1. In the app, go to Users and groups and select one of the assigned groups.
    Go to Users and groups and select one of the assigned groups.
  2. Copy the Object ID value.
    Copy the Object ID value.
  3. Repeat for every assigned group and keep a list.

Contact ClickView Support:
Email #1:
Send an email to support@clickvieweducation.com requesting:

  • The Identifier (Entity ID) and Reply URL (Assertion Consumer Service URL) for your institute
  • Include the Object IDs for all assigned groups (from Step 3)

ClickView Support replies with your Identifier and Reply URL. Wait for this reply before continuing.

Phase II: Configuring SAML Single Sign-On

Step 4: Select SAML as the sign-on method

  1. Open your ClickView app in Entra and select the Set up single sign-on tile, then select SAML under Single Sign-On.
    Select the Set up single sign-on tile, then select SAML under Single Sign-On.

Step 5: Add identifier URLs

  1. In the Basic SAML Configuration tile, select Edit.
    In the Basic SAML Configuration tile, select Edit.
  2. In the Basic SAML Configuration window, select Add identifier to edit Identifier (Entity ID), and Add reply URL to edit Reply URL (Assertion Consumer Service URL), using the values below.
FieldValue

Identifier (Entity ID)
This will in a reply email by ClickView Support team

Reply URL (ACS URL)
This will in a reply email by ClickView Support team

Logout URL

https://login.windows.net/common/oauth2/logout

Sign on URL

Leave blank (provided after onboarding)
In the Basic SAML Configuration window, select Add identifier to edit Identifier (Entity ID), and Add reply URL to edit Reply URL (Assertion Consumer Service URL), using the values below.

Step 6: Download the certificate and copy URLs

  1. Scroll to SAML Certificates (Step 3 on the Entra page) and download the Certificate (Base64).
    Download the Certificate (Base64).
  2. Scroll to Set up ClickView (Step 4 on the Entra page) and copy both:
    • Login URL
    • Microsoft Entra Identifier
Copy both

Contact ClickView Support:
Email #2:
Reply to the same email thread as Email #1 (or start a new email to support@clickvieweducation.com) and attach:

  • The Certificate (Base64) file
  • The Login URL
  • The Microsoft Entra Identifier

If any of your SAML attributes differ from what’s shown in this guide, mention the differences in this email. ClickView Support confirms once the setup is complete on their end. Continue to Phase III while you wait.

Phase III: Set User Attributes & Claims

Complete this phase while waiting for Support’s confirmation.

Step 7: Set up attributes

  1. Go to the Attributes & Claims tile and select Edit.
    Go to the Attributes & Claims tile and select Edit.
  2. Confirm the default attributes are present:
    • givenname
    • surname
    • emailaddress
    • name
  3. Select the Unique User Identifier (Name ID) claim.
    Select the Unique User Identifier (Name ID) claim.
  4. In Name identifier format, select Persistent.
    In Name identifier format, select Persistent.
  5. In the Source attribute drop-down, select user.objectid.
    In the Source attribute drop-down, select user.objectid.

Step 8: Add a group claim

A group claim allows ClickView to identify user roles and grade levels.

  1. Select + Add a group claim.
    Select + Add a group claim.
  2. Select Groups assigned to the application, select the Group ID option, then select Save.
    Select Groups assigned to the application, select the Group ID option, then select Save.

ClickView Support contacts you once the setup is complete on their end.

Pause — let ClickView Support know your attribute values
Reply to the earlier email thread with your attribute values: include each group’s Object ID and its corresponding grade level b7e2a1d4-93f0-4c6b-a812-3e5f9d027c41 = Grade 9).
ClickView Support uses these to configure value parsing before you enable the app.

Once ClickView Support confirms the setup is complete on their end, your users sign in to ClickView via SAML SSO through Microsoft Entra. Test the login at https://clickview.net/.

Quick reference


Phase

What you do
Then
Phase I
Create app, assign groups, collect Object IDs

Send Email #1 to ClickView Support and wait
Phase II
Configure SAML settings, download certificate

Send Email #2 to ClickView Support and wait
Phase III
Set user attributes, Name ID, and group claims
Email attribute details (Object ID + grade level) to Support. Test the login after confirmation at https://clickview.net/

Frequently asked questions

You’ll need to send at least two emails: the first to request your Identifier and Reply URL along with your group Object IDs, and the second to share your Base64 certificate, Login URL, and Microsoft Entra Identifier.
In the Entra portal, open your ClickView app, go to Users and groups, select each assigned group, and copy the Object ID value shown in the group details panel. Repeat this for every group you’ve assigned.
Include each Object ID alongside its corresponding role or grade/year level (for example, b7e2a1d4-93f0-4c6b-a812-3e5f9d027c41 = Grade 9, so ClickView Support can configure value parsing correctly on their end.
Yes, you can complete Phase III (setting user attributes, Name ID, and group claims) while waiting for Support’s confirmation after Email #2. This makes good use of the wait time.
Contact ClickView Support at support@clickvieweducation.com with your attribute configuration details and any error messages, and they’ll help you troubleshoot.