Setting up AD FS SSO for Bitrise
This guide provides step-by-step instructions on setting up SAML SSO using Microsoft Active Directory Federation Services (AD FS).
SAML SSO is only available for a Workspace with our paid plans.
Since the SAML SSO feature is tied to the above plans, if you decide to downgrade to a free plan, you will lose this feature. All Workspace members will receive an email about the downgrade, and you’ll have two weeks to re-upgrade if you wish to use SAML SSO in your Workspace again.
Before connecting SAML SSO to your Workspace:
- Make sure the AD FS administrator is at hand during the SAML SSO configuration process.
- Be aware that only the Workspace owner can set up SAML SSO to a Bitrise Workspace.
- Your account on Bitrise has a Workspace with one of our paid plans.
In this tutorial we will be jumping back and forth between Bitrise and AD FS so it is recommended that both tools are available during this process.
To configure SAML SSO with AD FS, you'll need to:
- Add the Identity provider sign-on URL from AD FS on Bitrise.
- Export a certificate generated by AD FS and add it on Bitrise.
- Add Bitrise as a relying party trust to AD FS.
- Configure claim rules.
Adding the identity provider sign-on URLClick to copy link
-
Log in to Bitrise and hover over the left navigation bar.
-
Make sure you have the right workspace selected in the Workspace menu.
-
Select Settings.

-
Go to the Single Sign-on tab.
-
Add the Identity provider sign-on URL from AD FS in the SAML SSO provider Single Sign-On URL (SSO URL) field.
For example, a valid value is
https://<AD FS URL>.com/adfs/ls.