You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
title: 'Tutorial: Azure Active Directory integration with GoodPractice Toolkit | Microsoft Docs'
3
-
description: Learn how to configure single sign-on between Azure Active Directory and GoodPractice Toolkit.
2
+
title: 'Tutorial: Azure Active Directory integration with Mind Tools Toolkit | Microsoft Docs'
3
+
description: Learn how to configure single sign-on between Azure Active Directory and Mind Tools Toolkit.
4
4
services: active-directory
5
5
documentationCenter: na
6
6
author: jeevansd
@@ -12,81 +12,71 @@ ms.service: active-directory
12
12
ms.subservice: saas-app-tutorial
13
13
ms.workload: identity
14
14
ms.tgt_pltfrm: na
15
-
ms.devlang: na
16
15
ms.topic: tutorial
17
-
ms.date: 04/15/2019
16
+
ms.date: 03/12/2020
18
17
ms.author: jeedes
19
18
20
19
ms.collection: M365-identity-device-management
21
20
---
22
-
# Tutorial: Azure Active Directory integration with GoodPractice Toolkit
21
+
# Tutorial: Azure Active Directory integration with Mind Tools Toolkit
23
22
24
-
In this tutorial, you learn how to integrate GoodPractice Toolkit with Azure Active Directory (Azure AD).
25
-
Integrating GoodPractice Toolkit with Azure AD provides you with the following benefits:
23
+
In this tutorial, you learn how to integrate Mind Tools Toolkit with Azure Active Directory (Azure AD).
24
+
Integrating Mind Tools Toolkit with Azure AD provides you with the following benefits:
26
25
27
-
* You can control in Azure AD who has access to GoodPractice Toolkit.
28
-
* You can enable your users to be automatically signed-in to GoodPractice Toolkit (Single Sign-On) with their Azure AD accounts.
26
+
* You can control in Azure AD who has access to Mind Tools Toolkit.
27
+
* You can enable your users to be automatically signed-in to Mind Tools Toolkit (Single Sign-On) with their Azure AD accounts.
29
28
* You can manage your accounts in one central location - the Azure portal.
30
29
31
-
If you want to know more details about SaaS app integration with Azure AD, see [What is application access and single sign-on with Azure Active Directory](https://docs.microsoft.com/azure/active-directory/active-directory-appssoaccess-whatis).
30
+
If you want to know more details about SaaS app integration with Azure AD, see [What is application access and single sign-on with Azure Active Directory](https://docs.microsoft.com/azure/active-directory/manage-apps/what-is-single-sign-on).
32
31
If you don't have an Azure subscription, [create a free account](https://azure.microsoft.com/free/) before you begin.
33
32
34
33
## Prerequisites
35
34
36
-
To configure Azure AD integration with GoodPractice Toolkit, you need the following items:
35
+
To configure Azure AD integration with Mind Tools Toolkit, you need the following items:
37
36
38
-
* An Azure AD subscription. If you don't have an Azure AD environment, you can get one-month trial [here](https://azure.microsoft.com/pricing/free-trial/)
39
-
*GoodPractice Toolkit single sign-on enabled subscription
37
+
* An Azure AD subscription. If you don't have a subscription, you can get a [free account](https://azure.microsoft.com/free/).
38
+
*Mind Tools Toolkit single sign-on enabled subscription
40
39
41
40
## Scenario description
42
41
43
42
In this tutorial, you configure and test Azure AD single sign-on in a test environment.
* GoodPractice Toolkit supports **Just In Time** user provisioning
44
+
* Mind Tools Toolkit supports **SP** initiated SSO
45
+
* Mind Tools Toolkit supports **Just In Time** user provisioning
46
+
* Once you configure Mind Tools Toolkit you can enforce session control, which protect exfiltration and infiltration of your organization’s sensitive data in real-time. Session control extend from Conditional Access. [Learn how to enforce session control with Microsoft Cloud App Security](https://docs.microsoft.com/cloud-app-security/proxy-deployment-any-app).
47
47
48
-
## Adding GoodPractice Toolkit from the gallery
48
+
## Adding Mind Tools Toolkit from the gallery
49
49
50
-
To configure the integration of GoodPractice Toolkit into Azure AD, you need to add GoodPractice Toolkit from the gallery to your list of managed SaaS apps.
50
+
To configure the integration of Mind Tools Toolkit into Azure AD, you need to add Mind Tools Toolkit from the gallery to your list of managed SaaS apps.
51
51
52
-
**To add GoodPractice Toolkit from the gallery, perform the following steps:**
52
+
1. Sign in to the [Azure portal](https://portal.azure.com) using either a work or school account, or a personal Microsoft account.
53
+
1. On the left navigation pane, select the **Azure Active Directory** service.
54
+
1. Navigate to **Enterprise Applications** and then select **All Applications**.
55
+
1. To add new application, select **New application**.
56
+
1. In the **Add from the gallery** section, type **Mind Tools Toolkit** in the search box.
57
+
1. Select **Mind Tools Toolkit** from results panel and then add the app. Wait a few seconds while the app is added to your tenant.
53
58
54
-
1. In the **[Azure portal](https://portal.azure.com)**, on the left navigation panel, click **Azure Active Directory** icon.
55
-
56
-

57
-
58
-
2. Navigate to **Enterprise Applications** and then select the **All Applications** option.
3. To add new application, click **New application** button on the top of dialog.
63
-
64
-

65
-
66
-
4. In the search box, type **GoodPractice Toolkit**, select **GoodPractice Toolkit** from result panel then click **Add** button to add the application.
67
-
68
-

69
59
## Configure and test Azure AD single sign-on
70
60
71
-
In this section, you configure and test Azure AD single sign-on with GoodPractice Toolkit based on a test user called **Britta Simon**.
72
-
For single sign-on to work, a link relationship between an Azure AD user and the related user in GoodPractice Toolkit needs to be established.
61
+
In this section, you configure and test Azure AD single sign-on with Mind Tools Toolkit based on a test user called **B.Simon**.
62
+
For single sign-on to work, a link relationship between an Azure AD user and the related user in Mind Tools Toolkit needs to be established.
73
63
74
-
To configure and test Azure AD single sign-on with GoodPractice Toolkit, you need to complete the following building blocks:
64
+
To configure and test Azure AD single sign-on with Mind Tools Toolkit, you need to complete the following building blocks:
75
65
76
-
1.**[Configure Azure AD Single Sign-On](#configure-azure-ad-single-sign-on)** - to enable your users to use this feature.
77
-
2.**[Configure GoodPractice Toolkit Single Sign-On](#configure-goodpractice-toolkit-single-sign-on)** - to configure the Single Sign-On settings on application side.
78
-
3.**[Create an Azure AD test user](#create-an-azure-ad-test-user)** - to test Azure AD single sign-on with Britta Simon.
79
-
4.**[Assign the Azure AD test user](#assign-the-azure-ad-test-user)** - to enable Britta Simon to use Azure AD single sign-on.
80
-
5.**[Create GoodPractice Toolkit test user](#create-goodpractice-toolkit-test-user)** - to have a counterpart of Britta Simon in GoodPractice Toolkit that is linked to the Azure AD representation of user.
81
-
6.**[Test single sign-on](#test-single-sign-on)** - to verify whether the configuration works.
66
+
1.**[Configure Azure AD SSO](#configure-azure-ad-sso)** - to enable your users to use this feature.
67
+
***[Create an Azure AD test user](#create-an-azure-ad-test-user)** - to test Azure AD single sign-on with B.Simon.
68
+
***[Assign the Azure AD test user](#assign-the-azure-ad-test-user)** - to enable B.Simon to use Azure AD single sign-on.
69
+
1.**[Configure Mind Tools Toolkit SSO](#configure-mind-tools-toolkit-sso)** - to configure the single sign-on settings on application side.
70
+
***[Create Mind Tools Toolkit test user](#create-mind-tools-toolkit-test-user)** - to have a counterpart of B.Simon in Mind Tools Toolkit that is linked to the Azure AD representation of user.
71
+
1.**[Test SSO](#test-sso)** - to verify whether the configuration works.
82
72
83
-
### Configure Azure AD single sign-on
73
+
### Configure Azure AD SSO
84
74
85
75
In this section, you enable Azure AD single sign-on in the Azure portal.
86
76
87
-
To configure Azure AD single sign-on with GoodPractice Toolkit, perform the following steps:
77
+
To configure Azure AD single sign-on with Mind Tools Toolkit, perform the following steps:
88
78
89
-
1. In the [Azure portal](https://portal.azure.com/), on the **GoodPractice Toolkit** application integration page, select **Single sign-on**.
79
+
1. In the [Azure portal](https://portal.azure.com/), on the **Mind Tools Toolkit** application integration page, select **Single sign-on**.
90
80
91
81

92
82
@@ -100,19 +90,17 @@ To configure Azure AD single sign-on with GoodPractice Toolkit, perform the foll
100
90
101
91
4. On the **Basic SAML Configuration** section, perform the following steps:
102
92
103
-

104
-
105
93
In the **Sign-on URL** text box, type a URL using the following pattern:
> The Sign-on URL value is not real. Update the value with the actual Sign-On URL. Contact [GoodPractice Toolkit Client support team](mailto:[email protected]) to get the value.
97
+
> The Sign-on URL value is not real. Update the value with the actual Sign-On URL. Contact [Mind Tools Toolkit Client support team](mailto:[email protected]) to get the value.
110
98
111
99
5. On the **Set up Single Sign-On with SAML** page, in the **SAML Signing Certificate** section, click **Download** to download the **Federation Metadata XML** from the given options as per your requirement and save it on your computer.
@@ -122,75 +110,60 @@ To configure Azure AD single sign-on with GoodPractice Toolkit, perform the foll
122
110
123
111
c. Logout URL
124
112
125
-
### Configure GoodPractice Toolkit Single Sign-On
126
-
127
-
To configure single sign-on on **GoodPractice Toolkit** side, you need to send the downloaded **Federation Metadata XML** and appropriate copied URLs from Azure portal to [GoodPractice Toolkit support team](mailto:[email protected]). They set this setting to have the SAML SSO connection set properly on both sides.
128
-
129
-
### Create an Azure AD test user
130
-
131
-
The objective of this section is to create a test user in the Azure portal called Britta Simon.
132
-
133
-
1. In the Azure portal, in the left pane, select **Azure Active Directory**, select **Users**, and then select **All users**.
113
+
### Create an Azure AD test user
134
114
135
-

115
+
In this section, you'll create a test user in the Azure portal called B.Simon.
136
116
137
-
2. Select **New user** at the top of the screen.
138
-
139
-

140
-
141
-
3. In the User properties, perform the following steps.
142
-
143
-

144
-
145
-
a. In the **Name** field enter **BrittaSimon**.
146
-
147
-
b. In the **User name** field type `brittasimon\@yourcompanydomain.extension`. For example, [email protected].
148
-
149
-
c. Select **Show password** check box, and then write down the value that's displayed in the Password box.
150
-
151
-
d. Click **Create**.
117
+
1. From the left pane in the Azure portal, select **Azure Active Directory**, select **Users**, and then select **All users**.
118
+
1. Select **New user** at the top of the screen.
119
+
1. In the **User** properties, follow these steps:

160
134
161
-
2. In the applications list, select **GoodPractice Toolkit**.
135
+
1. Select **Add user**, then select **Users and groups** in the **Add Assignment** dialog.
162
136
163
-

137
+

164
138
165
-
3. In the menu on the left, select **Users and groups**.
139
+
1. In the **Users and groups** dialog, select **B.Simon** from the Users list, then click the **Select** button at the bottom of the screen.
140
+
1. If you're expecting any role value in the SAML assertion, in the **Select Role** dialog, select the appropriate role for the user from the list and then click the **Select** button at the bottom of the screen.
141
+
1. In the **Add Assignment** dialog, click the **Assign** button.
166
142
167
-

143
+
## Configure Mind Tools Toolkit SSO
168
144
169
-
4. Click the **Add user**button, then select **Users and groups**in the **Add Assignment** dialog.
145
+
To configure single sign-on on **Mind Tools Toolkit**side, you need to send the downloaded **Federation Metadata XML**and appropriate copied URLs from Azure portal to [Mind Tools Toolkit support team](mailto:[email protected]). They set this setting to have the SAML SSO connection set properly on both sides.
5. In the **Users and groups** dialog select **Britta Simon**in the Users list, then click the **Select** button at the bottom of the screen.
149
+
In this section, a user called B.Simon is created in Mind Tools Toolkit. Mind Tools Toolkit supports **just-in-time provisioning**, which is enabled by default. There is no action item for you in this section. If a user doesn't already exist in Mind Tools Toolkit, a new one is created when you attempt to access Mind Tools Toolkit.
174
150
175
-
6. If you are expecting any role value in the SAML assertion then in the **Select Role** dialog select the appropriate role for the user from the list, then click the **Select** button at the bottom of the screen.
176
-
177
-
7. In the **Add Assignment** dialog click the **Assign** button.
178
-
179
-
### Create GoodPractice Toolkit test user
180
-
181
-
In this section, a user called Britta Simon is created in GoodPractice Toolkit. GoodPractice Toolkit supports **just-in-time provisioning**, which is enabled by default. There is no action item for you in this section. If a user doesn't already exist in GoodPractice Toolkit, a new one is created when you attempt to access GoodPractice Toolkit.
182
-
183
-
### Test single sign-on
151
+
### Test SSO
184
152
185
153
In this section, you test your Azure AD single sign-on configuration using the Access Panel.
186
154
187
-
When you click the GoodPractice Toolkit tile in the Access Panel, you should be automatically signed in to the GoodPractice Toolkit for which you set up SSO. For more information about the Access Panel, see [Introduction to the Access Panel](https://docs.microsoft.com/azure/active-directory/active-directory-saas-access-panel-introduction).
155
+
When you click the Mind Tools Toolkit tile in the Access Panel, you should be automatically signed in to the Mind Tools Toolkit for which you set up SSO. For more information about the Access Panel, see [Introduction to the Access Panel](https://docs.microsoft.com/azure/active-directory/active-directory-saas-access-panel-introduction).
188
156
189
157
## Additional Resources
190
158
191
159
-[List of Tutorials on How to Integrate SaaS Apps with Azure Active Directory](https://docs.microsoft.com/azure/active-directory/active-directory-saas-tutorial-list)
192
160
193
-
-[What is application access and single sign-on with Azure Active Directory?](https://docs.microsoft.com/azure/active-directory/active-directory-appssoaccess-whatis)
161
+
-[What is application access and single sign-on with Azure Active Directory?](https://docs.microsoft.com/azure/active-directory/manage-apps/what-is-single-sign-on)
162
+
163
+
-[What is conditional access in Azure Active Directory?](https://docs.microsoft.com/azure/active-directory/conditional-access/overview)
164
+
165
+
-[Try Mind Tools Toolkit with Azure AD](https://aad.portal.azure.com/)
194
166
195
-
-[What is Conditional Access in Azure Active Directory?](https://docs.microsoft.com/azure/active-directory/conditional-access/overview)
167
+
-[What is session control in Microsoft Cloud App Security?](https://docs.microsoft.com/cloud-app-security/proxy-intro-aad)
196
168
169
+
-[How to protect Mind Tools Toolkit with advanced visibility and controls](https://docs.microsoft.com/cloud-app-security/proxy-intro-aad)
0 commit comments