Skip to content

Commit 0b2a049

Browse files
authored
Merge pull request #171204 from bhavana-129/provisioning-7
SaaS App Tutorial: User provisioning connector-7
2 parents 4af11ea + edb0354 commit 0b2a049

File tree

4 files changed

+136
-240
lines changed

4 files changed

+136
-240
lines changed

articles/active-directory/saas-apps/sigma-computing-tutorial.md

Lines changed: 7 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ ms.service: active-directory
99
ms.subservice: saas-app-tutorial
1010
ms.workload: identity
1111
ms.topic: tutorial
12-
ms.date: 01/27/2021
12+
ms.date: 09/01/2021
1313
ms.author: jeedes
1414

1515
---
@@ -33,8 +33,9 @@ To get started, you need the following items:
3333

3434
In this tutorial, you configure and test Azure AD SSO in a test environment.
3535

36-
* Sigma Computing supports **SP and IDP** initiated SSO
37-
* Sigma Computing supports **Just In Time** user provisioning
36+
* Sigma Computing supports **SP and IDP** initiated SSO.
37+
* Sigma Computing supports **Just In Time** user provisioning.
38+
* Sigma Computing supports [Automated user provisioning](sigma-computing-provisioning-tutorial.md).
3839

3940
> [!NOTE]
4041
> Identifier of this application is a fixed string value so only one instance can be configured in one tenant.
@@ -50,7 +51,6 @@ To configure the integration of Sigma Computing into Azure AD, you need to add S
5051
1. In the **Add from the gallery** section, type **Sigma Computing** in the search box.
5152
1. Select **Sigma Computing** from results panel and then add the app. Wait a few seconds while the app is added to your tenant.
5253

53-
5454
## Configure and test Azure AD SSO for Sigma Computing
5555

5656
Configure and test Azure AD SSO with Sigma Computing using a test user called **B.Simon**. For SSO to work, you need to establish a link relationship between an Azure AD user and the related user in Sigma Computing.
@@ -97,6 +97,7 @@ Follow these steps to enable Azure AD SSO in the Azure portal.
9797
1. On the **Set up Sigma Computing** section, copy the appropriate URL(s) based on your requirement.
9898

9999
![Copy configuration URLs](common/copy-configuration-urls.png)
100+
100101
### Create an Azure AD test user
101102

102103
In this section, you'll create a test user in the Azure portal called B.Simon.
@@ -145,6 +146,8 @@ In this section, you'll enable B.Simon to use Azure single sign-on by granting a
145146

146147
In this section, a user called Britta Simon is created in Sigma Computing. Sigma Computing supports just-in-time user provisioning, which is enabled by default. There is no action item for you in this section. If a user doesn't already exist in Sigma Computing, a new one is created after authentication.
147148

149+
Sigma Computing also supports automatic user provisioning, you can find more details [here](./sigma-computing-provisioning-tutorial.md) on how to configure automatic user provisioning.
150+
148151
## Test SSO
149152

150153
In this section, you test your Azure AD single sign-on configuration with following options.

articles/active-directory/saas-apps/signagelive-tutorial.md

Lines changed: 60 additions & 116 deletions
Original file line numberDiff line numberDiff line change
@@ -9,92 +9,66 @@ ms.service: active-directory
99
ms.subservice: saas-app-tutorial
1010
ms.workload: identity
1111
ms.topic: tutorial
12-
ms.date: 1/11/2019
12+
ms.date: 09/01/2021
1313
ms.author: jeedes
1414
---
1515
# Tutorial: Azure Active Directory integration with Signagelive
1616

17-
In this tutorial, you learn how to integrate Signagelive with Azure Active Directory (Azure AD).
18-
Integrating Signagelive with Azure AD provides you with the following benefits:
17+
In this tutorial, you'll learn how to integrate Signagelive with Azure Active Directory (Azure AD). When you integrate Signagelive with Azure AD, you can:
1918

20-
* You can control in Azure AD who has access to Signagelive.
21-
* You can enable your users to be automatically signed in to Signagelive (single sign-on) with their Azure AD accounts.
22-
* You can manage your accounts in one central location: the Azure portal.
23-
24-
For more information about SaaS app integration with Azure AD, see [What is application access and single sign-on with Azure Active Directory](../manage-apps/what-is-single-sign-on.md). If you don't have an Azure subscription, [create a free account](https://azure.microsoft.com/free/) before you begin.
19+
* Control in Azure AD who has access to Signagelive.
20+
* Enable your users to be automatically signed-in to Signagelive with their Azure AD accounts.
21+
* Manage your accounts in one central location - the Azure portal.
2522

2623
## Prerequisites
2724

28-
To configure Azure AD integration with Signagelive, you need the following items:
25+
To get started, you need the following items:
2926

30-
* An Azure AD subscription. If you don't have an Azure AD environment, you can get a [one-month trial](https://azure.microsoft.com/pricing/free-trial/).
31-
* A Signagelive single-sign-on-enabled subscription.
27+
* An Azure AD subscription. If you don't have a subscription, you can get a [free account](https://azure.microsoft.com/free/).
28+
* Signagelive single sign-on (SSO) enabled subscription.
3229

3330
## Scenario description
3431

3532
In this tutorial, you configure and test Azure AD single sign-on in a test environment.
3633

3734
* Signagelive supports SP-initiated SSO.
35+
* Signagelive supports [Automated user provisioning](signagelive-provisioning-tutorial.md).
3836

3937
## Add Signagelive from the gallery
4038

41-
To configure the integration of Signagelive into Azure AD, first add Signagelive from the gallery to your list of managed SaaS apps.
42-
43-
To add Signagelive from the gallery, take the following steps:
44-
45-
1. In the [Azure portal](https://portal.azure.com), in the left pane, select the **Azure Active Directory** icon.
46-
47-
![The Azure Active Directory button](common/select-azuread.png)
48-
49-
2. Go to **Enterprise Applications**, and then select the **All Applications** option.
50-
51-
![The Enterprise applications blade](common/enterprise-applications.png)
52-
53-
3. To add a new application, select the **New application** button at the top of the dialog box.
54-
55-
![The New application button](common/add-new-app.png)
56-
57-
4. In the search box, enter **Signagelive**.
58-
59-
![Signagelive in the results list](common/search-new-app.png)
39+
To configure the integration of Signagelive into Azure AD, you need to add Signagelive from the gallery to your list of managed SaaS apps.
6040

61-
5. Select **Signagelive** from the results pane, and then select the **Add** button to add the application.
41+
1. Sign in to the Azure portal using either a work or school account, or a personal Microsoft account.
42+
1. On the left navigation pane, select the **Azure Active Directory** service.
43+
1. Navigate to **Enterprise Applications** and then select **All Applications**.
44+
1. To add new application, select **New application**.
45+
1. In the **Add from the gallery** section, type **Signagelive** in the search box.
46+
1. Select **Signagelive** from results panel and then add the app. Wait a few seconds while the app is added to your tenant.
6247

63-
## Configure and test Azure AD single sign-on
48+
## Configure and test Azure AD SSO for Signagelive
6449

65-
In this section, you configure and test Azure AD single sign-on with Signagelive based on a test user called **Britta Simon**.
66-
For single sign-on to work, you must establish a link between an Azure AD user and the related user in Signagelive.
50+
Configure and test Azure AD SSO with Signagelive using a test user called **B.Simon**. For SSO to work, you need to establish a link relationship between an Azure AD user and the related user in Signagelive.
6751

68-
To configure and test Azure AD single sign-on with Signagelive, first complete the following building blocks:
52+
To configure and test Azure AD SSO with Signagelive, perform the following steps:
6953

70-
1. [Configure Azure AD single sign-on](#configure-azure-ad-single-sign-on) to enable your users to use this feature.
71-
2. [Configure Signagelive single sign-on](#configure-signagelive-single-sign-on) to configure the single sign-on settings on the application side.
72-
3. [Create an Azure AD test user](#create-an-azure-ad-test-user) to test Azure AD single sign-on with Britta Simon.
73-
4. [Assign the Azure AD test user](#assign-the-azure-ad-test-user) to enable Britta Simon to use Azure AD single sign-on.
74-
5. [Create a Signagelive test user](#create-a-signagelive-test-user) to have a counterpart of Britta Simon in Signagelive that is linked to the Azure AD representation of the user.
75-
6. [Test single sign-on](#test-single-sign-on) to verify that the configuration works.
54+
1. **[Configure Azure AD SSO](#configure-azure-ad-sso)** - to enable your users to use this feature.
55+
1. **[Create an Azure AD test user](#create-an-azure-ad-test-user)** - to test Azure AD single sign-on with B.Simon.
56+
1. **[Assign the Azure AD test user](#assign-the-azure-ad-test-user)** - to enable B.Simon to use Azure AD single sign-on.
57+
1. **[Configure Signagelive SSO](#configure-signagelive-sso)** - to configure the single sign-on settings on application side.
58+
1. **[Create Signagelive test user](#create-signagelive-test-user)** - to have a counterpart of B.Simon in Signagelive that is linked to the Azure AD representation of user.
59+
1. **[Test SSO](#test-sso)** - to verify whether the configuration works.
7660

77-
### Configure Azure AD single sign-on
61+
## Configure Azure AD SSO
7862

79-
In this section, you enable Azure AD single sign-on in the Azure portal.
63+
Follow these steps to enable Azure AD SSO in the Azure portal.
8064

81-
To configure Azure AD single sign-on with Signagelive, take the following steps:
65+
1. In the Azure portal, on the **Signagelive** application integration page, find the **Manage** section and select **single sign-on**.
66+
1. On the **Select a single sign-on method** page, select **SAML**.
67+
1. On the **Set up single sign-on with SAML** page, click the pencil icon for **Basic SAML Configuration** to edit the settings.
8268

83-
1. In the [Azure portal](https://portal.azure.com/), on the **Signagelive** application integration page, select **Single sign-on**.
69+
![Edit Basic SAML Configuration](common/edit-urls.png)
8470

85-
![Configure single sign-on link](common/select-sso.png)
86-
87-
2. In the **Select a single sign-on method** dialog box, select **SAML** to enable single sign-on.
88-
89-
![Single sign-on select mode](common/select-saml-option.png)
90-
91-
3. On the **Set up single sign-on with SAML** page, select **Edit** to open the **Basic SAML Configuration** dialog box.
92-
93-
![Edit Basic SAML Configuration](common/edit-urls.png)
94-
95-
4. In the **Basic SAML Configuration** section, take the following steps:
96-
97-
![Signagelive Domain and URLs single sign-on information](common/sp-signonurl.png)
71+
4. In the **Basic SAML Configuration** section, take the following step:
9872

9973
In the **Sign-on URL** box, enter a URL that uses the following pattern:
10074
`https://login.signagelive.com/sso/<ORGANIZATIONALUNITNAME>`
@@ -110,80 +84,50 @@ To configure Azure AD single sign-on with Signagelive, take the following steps:
11084

11185
![Copy configuration URLs](common/copy-configuration-urls.png)
11286

113-
a. Login URL
114-
115-
b. Azure AD Identifier
116-
117-
c. Logout URL
118-
119-
### Configure Signagelive Single sign-on
120-
121-
To configure single sign-on on the Signagelive side, send the downloaded **Certificate (Raw)** and copied URLs from the Azure portal to the [Signagelive support team](mailto:[email protected]). They ensure that the SAML SSO connection is set properly on both sides.
122-
12387
### Create an Azure AD test user
12488

125-
The objective of this section is to create a test user in the Azure portal called Britta Simon.
126-
127-
1. In the Azure portal, in the left pane, select **Azure Active Directory**, select **Users**, and then select **All users**.
128-
129-
![The "Users and groups" and "All users" links](common/users.png)
130-
131-
2. Select **New user** at the top of the screen.
132-
133-
![New user button](common/new-user.png)
134-
135-
3. In the **User** dialog box, take the following steps.
136-
137-
![The User dialog box](common/user-properties.png)
138-
139-
a. In the **Name** field, enter **BrittaSimon**.
140-
141-
b. In the **User name** field, enter "[email protected]". For example, in this case, you might enter "[email protected]".
142-
143-
c. Select the **Show password** check box, and then note the value that's displayed in the Password box.
89+
In this section, you'll create a test user in the Azure portal called B.Simon.
14490

145-
d. Select **Create**.
91+
1. From the left pane in the Azure portal, select **Azure Active Directory**, select **Users**, and then select **All users**.
92+
1. Select **New user** at the top of the screen.
93+
1. In the **User** properties, follow these steps:
94+
1. In the **Name** field, enter `B.Simon`.
95+
1. In the **User name** field, enter the [email protected]. For example, `[email protected]`.
96+
1. Select the **Show password** check box, and then write down the value that's displayed in the **Password** box.
97+
1. Click **Create**.
14698

14799
### Assign the Azure AD test user
148100

149-
In this section, you enable Britta Simon to use Azure single sign-on by granting access to Signagelive.
101+
In this section, you'll enable B.Simon to use Azure single sign-on by granting access to Signagelive.
150102

151-
1. In the Azure portal, select **Enterprise Applications**, select **All applications**, and then select **Signagelive**.
103+
1. In the Azure portal, select **Enterprise Applications**, and then select **All applications**.
104+
1. In the applications list, select **Signagelive**.
105+
1. In the app's overview page, find the **Manage** section and select **Users and groups**.
106+
1. Select **Add user**, then select **Users and groups** in the **Add Assignment** dialog.
107+
1. In the **Users and groups** dialog, select **B.Simon** from the Users list, then click the **Select** button at the bottom of the screen.
108+
1. If you are expecting a role to be assigned to the users, you can select it from the **Select a role** dropdown. If no role has been set up for this app, you see "Default Access" role selected.
109+
1. In the **Add Assignment** dialog, click the **Assign** button.
152110

153-
![Enterprise applications blade](common/enterprise-applications.png)
111+
## Configure Signagelive SSO
154112

155-
2. In the applications list, select **Signagelive**.
156-
157-
![The Signagelive link in the Applications list](common/all-applications.png)
158-
159-
3. In the menu on the left, select **Users and groups**.
160-
161-
![The "Users and groups" link](common/users-groups-blade.png)
162-
163-
4. Select the **Add user** button. Then, in the **Add Assignment** dialog box, select **Users and groups**.
164-
165-
![The Add Assignment pane](common/add-assign-user.png)
166-
167-
5. In the **Users and groups** dialog box, in the **Users** list, select **Britta Simon**. Then click the **Select** button at the bottom of the screen.
168-
169-
6. If you are expecting a role value in the SAML assertion, then, in the **Select Role** dialog box, select the appropriate role for the user from the list. Next, click the **Select** button at the bottom of the screen.
170-
171-
7. In the **Add Assignment** dialog box, select the **Assign** button.
113+
To configure single sign-on on the Signagelive side, send the downloaded **Certificate (Raw)** and copied URLs from the Azure portal to the [Signagelive support team](mailto:[email protected]). They ensure that the SAML SSO connection is set properly on both sides.
172114

173-
### Create a Signagelive test user
115+
### Create Signagelive test user
174116

175117
In this section, you create a user called Britta Simon in Signagelive. Work with the [Signagelive support team](mailto:[email protected]) to add the users in the Signagelive platform. You must create and activate users before you use single sign-on.
176118

177-
### Test single sign-on
119+
Signagelive also supports automatic user provisioning, you can find more details [here](./signagelive-provisioning-tutorial.md) on how to configure automatic user provisioning.
120+
121+
## Test SSO
178122

179-
In this section, you test your Azure AD single sign-on configuration by using the MyApps portal.
123+
In this section, you test your Azure AD single sign-on configuration with following options.
180124

181-
When you select the **Signagelive** tile in the MyApps portal, you should be automatically signed in. For more information about the MyApps portal, see [What is the MyApps portal?](../user-help/my-apps-portal-end-user-access.md).
125+
* Click on **Test this application** in Azure portal. This will redirect to Signagelive Sign-on URL where you can initiate the login flow.
182126

183-
## Additional resources
127+
* Go to Signagelive Sign-on URL directly and initiate the login flow from there.
184128

185-
- [List of tutorials on how to integrate SaaS Apps with Azure Active Directory](./tutorial-list.md)
129+
* You can use Microsoft My Apps. When you click the Signagelive tile in the My Apps, this will redirect to Signagelive Sign-on URL. For more information about the My Apps, see [Introduction to the My Apps](../user-help/my-apps-portal-end-user-access.md).
186130

187-
- [What is application access and single sign-on with Azure Active Directory?](../manage-apps/what-is-single-sign-on.md)
131+
## Next steps
188132

189-
- [What is Conditional Access in Azure Active Directory?](../conditional-access/overview.md)
133+
Once you configure Signagelive you can enforce session control, which protects exfiltration and infiltration of your organization’s sensitive data in real time. Session control extends from Conditional Access. [Learn how to enforce session control with Microsoft Cloud App Security](/cloud-app-security/proxy-deployment-aad).

0 commit comments

Comments
 (0)