Open your Azure AD and select Enterprise applications
Click New application
Click Create your own application
Add a name for your app and ensure Integrate any other application you don't find in the gallery (Non-gallery) is selected and click Create
Click Single sign-on in the navigation bar
Click on SAML to select SAML as the single sign-on method
Edit the Basic SAML Configuration and enter these details then Save:
Identifier: urn:amazon:cognito:sp:us-west-2_QKp3VycRu
Reply URL: https://lightyear-live.auth.us-west-2.amazoncognito.com/saml2/idpresponse
Sign on URL: https://app.lightyear.cloud/sso-verification
Logout Uri: https://app.lightyear.cloud/login
Under the SAML Certificates section, copy the App Federation Metadata Url and give this to Lightyear.
At this point you can make any other configuration changes to your application e.g. assigning users.
Final configuration changes are made by Lightyear (on Cognito) upon which a new URL for initiating the SSO flow will be passed across.
