Home > SI Documentation (v20) > Administrator Guide > Setup > Control Panel > Azure Active Directory

Azure Active Directory

Table of contents

button.png

Our integration with Azure Active Directory (AAD) allows you to use the same credentials used in AAD to log into SI, providing a Single Sign-On option to you. This means that no passwords are created or stored in SI, adding a layer of security for you.

Setup

 

In order for this integration to work, you must first make some setting changes in our instance of AAD.

 

  1. Sign in to your instance of AAD using this link: https://aad.portal.azure.com/. You must be an “Application Administrator” or a “Global Administrator” to configure the “App registration” in AAD.
  2. Click "All Services" on the left panel and then click Azure Active Directory.

 

screen 1.png

 

The Company Overview window will display.

 

  1. Click "App registrations" under Manage.

 

screen 2.png

 

  1. Click "New registration":

 

screen 3.png

 

  1. Enter a name, DTOOLSSI is a fine name. Leave the "Accounts in this organizational directory only...." option selected and click the Register button.

 

screen 4.png

 

  1. Click "Authentications" under Manage.

 

screen 5.png

 

  1. Click "Add a platform":

 

screen 6.png

 

  1. Click "Mobile and desktop applications":

 

screen 7.png

 

  1. In the "Configure Desktop + devices" window, select the first option and then click the Configure button:

 

screen 8.png

 

  1. Scroll down and click Yes to "Allow public client flows" and then click the Save button:

 

screen 9.png

 

  1. Click "API permissions" under Manage:

 

screen 10.png

 

  1. Click "Add a permission":

 

screen 11.png

 

  1. Click "Microsoft Graph":

 

screen 12.png

 

  1. Click "Delegated permissions":

 

screen 13.png

 

  1. Search for User.Read.All, click on it to select the permission. then click the Add Permissions button:

 

screen 14.png

 

  1. Click "Grant admin consent for DTOOLSSI" (or whatever you decided to name the integration in step 5):

 

screen 15.png

 

  1. Click "Overview" and make a note of the Application (client) ID and Directory (tenant) ID values:

 

screen 16.png

 

  1. Open System Integrator and click Start->Setup->Control Panel.
  2. Double-click the "Azure Active Directory" icon.

 

azure active directory button in cp.png

 

  1. Tick the "Enable integration" checkbox and then enter your Client ID and Tenant ID from AAD and then click Save:

 

aad form.png

 

  1. You will be prompted to sign in to your instance of AAD:

 

log in to aad.png

 

Once you sign in you will get a confirmation the integration is enabled:

 

confirmaiton.png

 

You can now import Users into SI from AAD or link existing SI user's to AAD. Click here for details.

Last modified

Tags

This page has no custom tags.

Classifications

This page has no classifications.