Prerequisites
- Entra ID admin access
- Lovable workspace Owner or Admin
Configure in Entra ID
1
Enterprise application
Microsoft Entra ID → Enterprise applications → New application → Create your own application → Integrate any other application you don’t find in the gallery.
2
Set up single sign-on
Choose SAML and configure:
- Identifier (Entity ID): https://auth.lovable.dev/\_\_/auth/handler
- Reply URL (Assertion Consumer Service URL): https://auth.lovable.dev/\_\_/auth/handler
3
User Attributes & Claims
Ensure:
email→ user.mail or user.userprincipalnamedisplay_name→ user.displayname
4
Users and groups
Assign users/groups who should have access.
5
SAML Signing Certificate
Use default signing unless your policy requires otherwise. Download metadata if needed.
Reference
- ACS URL: https://auth.lovable.dev/\_\_/auth/handler
- Entity ID: https://auth.lovable.dev/\_\_/auth/handler
- Required attributes:
email,display_name
Troubleshooting
Reply URL mismatch
Reply URL mismatch
Email claim missing
Email claim missing
Map
email to user.mail or user.userprincipalname if mail is empty.