You can connect Microsoft Entra ID to your Dext account using SAML single sign-on (SSO).
To complete the setup, you will:
Create a Dext Enterprise Application in Microsoft Entra ID.
Retrieve your account CRN (Identifier) and Reply URL from Dext
Configure SAML in Entra ID.
Paste your App Federation Metadata URL into Dext to finalise the connection.
Important:
You must be an Admin user in Dext to manage Authentication settings.
You must have at least the Application Administrator role in Microsoft Entra ID.
Step 1 - Create the Enterprise Application in Microsoft Entra ID
Before configuring SAML, you must first create the Enterprise Application in your Microsoft Entra ID tenant.
Create a new Enterprise Application
Log in to Microsoft Entra ID.
Go to Enterprise applications.
Select New application.
Create your own application
On the Microsoft Entra App Gallery page, select Create your own application.
Enter Dext as the application name.
Select Integrate any other application you don’t find in the gallery (Non-gallery).
Select Create.
Your Enterprise Application is now created, and you’ll be redirected to the Application Overview page.
Keep this tab open. You’ll switch between Dext and Microsoft Entra ID during this setup.
Step 2 - Retrieve your Identifier (CRN) and Reply URL from Dext
Now switch to Dext. You need your account-specific values before configuring SAML.
In Dext, go to Practice settings or Business settings in the sidebar.
Select Authentication.
Select Connect next to Microsoft Entra ID.
Confirm Enterprise Application creation
Tick I have created a new enterprise application in my Microsoft Entra ID tenant.
Select Next.
Copy your Identifier (CRN) and Reply URL
Dext now displays:
Identifier → This is your Dext account CRN
Reply URL → https://app.dext.com/saml/entra/complete
You’ll need both values in the next step.
Keep this tab open.
Step 3 - Configure SAML in Microsoft Entra ID
Return to your Enterprise Application in Entra.
Open the Enterprise Application you just created.
Select Single sign-on on the Overview page or from the left-hand sidebar.
Select SAML.
Configure Basic SAML settings
In Basic SAML Configuration, select Edit.
Set the following values:
Identifier (Entity ID) = paste the CRN copied from Dext
Reply URL (Assertion Consumer Service URL) = https://app.dext.com/saml/entra/complete
Copy the App Federation Metadata URL
Scroll to the SAML Certificates section.
Copy the App Federation Metadata Url.
Step 4 - Complete the connection in Dext
Return to the Dext SSO modal.
Tick I have configured the SAML settings in my Microsoft Entra ID tenant.
Select Next.
Enter your Metadata URL
Paste the App Federation Metadata URL into the Metadata URL field.
Select Connect.
Successful connection
If successful, you’ll see a confirmation screen.
Your Dext account is now connected to Microsoft Entra ID.
To allow users to log in via SSO, assign users or groups to the Dext Enterprise Application in Microsoft Entra ID.
Troubleshooting
If your SAML certificate changes in Microsoft Entra ID
If the SAML certificate is updated or renewed in Microsoft Entra ID, SSO will stop working until you refresh the configuration in Dext.
Refresh SAML configuration
Go to Practice settings or Business settings > Authentication.
Select Refresh in the top-right corner.
You’ll see a modal displaying the Metadata URL Dext uses to fetch your SAML configuration.
Select Refresh to synchronise your latest SAML certificate. Dext will fetch and apply the updated configuration automatically.
Connecting to a new Microsoft Entra ID application
If you need to connect Dext to a different Enterprise Application:
Go to Practice settings or Business settings > Authentication.
Select Disconnect.
Confirm the action.
This immediately disables the existing SSO connection.
After disconnecting:
Repeat the integration flow.
Enter the new App Federation Metadata URL.
Verify that the fetched certificate details match your Entra configuration.
Can I connect multiple Dext accounts to Microsoft Entra ID?
Yes. Each Dext account requires its own Enterprise Application in Microsoft Entra ID.
When configuring SAML, use the CRN for the specific Dext account you are connecting.
