Menu
Table of Contents
<All topics
Print

Setting up the EntraID connector

Adding a new connector

In the administration area, click on the menu on the left. Settings > Integrations.

Preparations in Azure AD / Entra ID

This article describes the necessary steps to configure Microsoft Entra ID, including registering the application and assigning the required API permissions.

How to configure Microsoft Entra ID

  1. Go to Microsoft Entra Admin Center or to Microsoft Azure (https://portal.azure.com).
  2. Log in with your administrator credentials.
  3. Register the application (if not already registered) and configure the required API permissions:
    • Go to App registrations.
    • If your application is not yet registered, click New registrationand enter the required registration information for your application.
    • Select your application and navigate to API permissions.
    • Make sure the following API permissions are added to allow the application to interact with Microsoft Entra ID:
      • Directory.Read.All
      • Group.Read.All
      • User.Read.All
      • UserAuthenticationMethod.ReadWrite.All
    • Ensure that administrator consent is granted for the requested permissions.

    Microsoft Entra ID is successfully configured.

    Setting up the EntraID connector

    In the toolbar, click Add connector.
    The dialog box Add connector The connector type that has already been added to the organization is displayed. It is not shown for selection.

    Select a connector type Microsoft Access ID .
    click on Continue.
    The entry New connector is displayed.
    Enter in the field Name a name for the entry of the Socket .
    Enter your login details according to your chosen provider.

    Enter in the Connection settings the fields Application ID (Client), Directory ID (Tenant) and the Secret Key from Azure EntraID.

    You can obtain the application ID, directory ID and client secret data from the Azure portal at https://portal.azure.com .

    Copy the information from the Value column for the Secret Key Information to be stored in the EMPlatform.

    In the synchronization configuration, you have the option to define whether all EntraIDs administrative units or only selected administrative units should be considered during synchronization.

    Furthermore, you can User ID Determine the user by their User Principal Name (UPN) or email address. In hybrid environments using Active Directory and EntraID, it is important that the user ID is consistent.

    New users can also be automatically activated, and automatic synchronization can be set up according to the defined schedule. Timetable to be set up.

    So that EntraID Single Sign On (SSO) (if set up in EntraID) can be used to log in to EMPlatform and Appterix, activate this function in the last step and enter the Application ID and Directory ID.