2022-12-09 10:19:55 +00:00
---
id: azuread
title: AzureAD
---
# AzureAD Single Sign-on
:::info
To construct a Well Known URL refer this link :: https://docs.microsoft.com/en-us/azure/active-directory/develop/v2-protocols-oidc
:::
- Open your organisation page and select `app registration`
2023-01-09 13:19:46 +00:00
< div style = {{textAlign: ' center ' } } >
2022-12-09 10:19:55 +00:00
2023-01-09 13:19:46 +00:00
< img className = "screenshot-full" src = "/img/sso/azuread/azure-app-reg.png" alt = "Azure AD: SSO" width = "400" / >
2022-12-09 10:19:55 +00:00
2023-01-09 13:19:46 +00:00
< / div >
2022-12-09 10:19:55 +00:00
- Select `new registration`
2023-01-09 13:19:46 +00:00
< div style = {{textAlign: ' center ' } } >
2022-12-09 10:19:55 +00:00
2023-01-09 13:19:46 +00:00
< img className = "screenshot-full" src = "/img/sso/azuread/select-new-reg-azure.png" alt = "Azure AD: SSO" width = "700" / >
2022-12-09 10:19:55 +00:00
2023-01-09 13:19:46 +00:00
< / div >
2022-12-09 10:19:55 +00:00
2023-01-09 13:19:46 +00:00
- Open your organisation page and select App registration.
2022-12-09 10:19:55 +00:00
- Enter name, select supported account type and enter the redirect URL which can be copied from `Manage SSO -> Open Id -> Redirect URL, click on register` .
2023-01-09 13:19:46 +00:00
< div style = {{textAlign: ' center ' } } >
2022-12-09 10:19:55 +00:00
2023-01-09 13:19:46 +00:00
< img className = "screenshot-full" src = "/img/sso/azuread/azure-3.png" alt = "Azure AD: SSO" width = "700" / >
2022-12-09 10:19:55 +00:00
2023-01-09 13:19:46 +00:00
< / div >
2022-12-09 10:19:55 +00:00
- Application will be registered and will be able to view the details
- Configure Application (Client) ID as `client id` in Open Id configuration page.
2023-01-09 13:19:46 +00:00
< div style = {{textAlign: ' center ' } } >
2022-12-09 10:19:55 +00:00
2023-01-09 13:19:46 +00:00
< img className = "screenshot-full" src = "/img/sso/azuread/azure-4-cred.png" alt = "Azure AD: SSO" width = "700" / >
2022-12-09 10:19:55 +00:00
2023-01-09 13:19:46 +00:00
< / div >
2022-12-09 10:19:55 +00:00
- Click on `Add certificate or secret` next to the **Client credentials** .
- Click on `+New Client Secret`
2023-01-09 13:19:46 +00:00
< div style = {{textAlign: ' center ' } } >
2022-12-09 10:19:55 +00:00
2023-01-09 13:19:46 +00:00
< img className = "screenshot-full" src = "/img/sso/azuread/azure8.png" alt = "Azure AD: SSO" width = "700" / >
2022-12-09 10:19:55 +00:00
2023-01-09 13:19:46 +00:00
< / div >
2022-12-09 10:19:55 +00:00
- Give a description, set the expiry, and then click on the `Add` button.
2023-01-09 13:19:46 +00:00
< div style = {{textAlign: ' center ' } } >
2022-12-09 10:19:55 +00:00
2023-01-09 13:19:46 +00:00
< img className = "screenshot-full" src = "/img/sso/azuread/azure7.png" alt = "Azure AD: SSO" width = "700" / >
2022-12-09 10:19:55 +00:00
2023-01-09 13:19:46 +00:00
< / div >
2022-12-09 10:19:55 +00:00
- Secret will be created, copy value and add it to the `client secret` section of Open Id SSO config.
- You can brand the redirect page using the branding and properties option.
2023-01-09 13:19:46 +00:00
< div style = {{textAlign: ' center ' } } >
2022-12-09 10:19:55 +00:00
2023-01-09 13:19:46 +00:00
< img className = "screenshot-full" src = "/img/sso/azuread/azure9.png" alt = "Azure AD: SSO" width = "700" / >
2022-12-09 10:19:55 +00:00
2023-01-09 13:19:46 +00:00
< / div >