Note: If you've signed up with the Freshworks Suite of Products from February 2020, you can configure Azure AD Single Sign-On for Freshservice using your Freshworks Organization Account.
Users can leverage Single Sign-On (SSO) by adding this app to their directory. Follow the steps below for adding and configuring the app for Freshservice SSO.
1. Go to your Azure Active Directory, and choose Enterprise Applications.
2. Select New Application and choose Freshservice under Education and click Add.

3. After the application has been added onto your Azure portal, go to All applications and click on Freshservice.

4. Select Single sign-on from the left sidebar and choose SAML-based Sign-On under Single Sign-on Mode.

5. Fill the Freshservice Domain and URL info as shown in the image below.

6. Scroll down to the advanced certificate signing settings and make sure the Signing Algorithm is SHA-256. Once done, click on Configure Freshservice.

7. Click on Download Azure AD Signing Certificate and perform the below actions to convert it to Base 64 format.

8. After downloading the certificate on your windows machine, open it, navigate to details pane and click on Copy to file.

9. A certificate export Wizard will appear on the screen. Select Base-64 encoded X.509 (.CER) as the option. Once done, click Next.

10. Choose the path to where you wish to export the converted certificate and click Next.


11. Open the converted certificate using Notepad.

12. Copy the content from the Notepad and navigate to https://www.samltool.com/fingerprint.php. Make sure you select SHA-256 in Algorithm.

13. To configure SAML SSO on the Freshservice portal, go to Admin > Global Settings > Account Settings > Portal > click the required portal > Portal settings > Login methods and security > click the edit icon to access the Security page.
Note: You need the Organization Admin role to update the login methods. Go to Freshworks Switcher > User > Admin Center Roles > Organization Admins > Assign users > select the user and click Assign.


14. In the Security page, click Default Login Method > SSO L > SAML.


14. Login URL can be taken from the Azure portal and the fingerprint can be taken from step 12.
15. Make sure the user’s that needs access to the portal are created and assigned on Azure AD.
16. You can go ahead and test the Azure AD SSO upon completion of the above steps.
App links from the gallery
