Skip to content

Commit 5eb4e81

Browse files
Merge branch 'MicrosoftDocs:main' into docs-editor/service-accounts-principal-1695718122
2 parents 3e8f2cd + 205acc8 commit 5eb4e81

File tree

3 files changed

+171
-2
lines changed

3 files changed

+171
-2
lines changed

articles/active-directory/external-identities/index.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@ brand: azure
88

99
metadata:
1010
title: Microsoft Entra External ID documentation
11-
description: Learn how to use Microsoft Entra ID for customers to manage how partners and customers sign in to your applications.
11+
description: Learn how to use Microsoft Entra External ID for customers to manage how partners and customers sign in to your applications.
1212
services: active-directory
1313
ms.service: active-directory
1414
ms.subservice: ciam
@@ -42,7 +42,7 @@ highlightedContent:
4242
additionalContent:
4343
# Supports up to 4 subsections
4444
sections:
45-
- title: Microsoft Entra ID for customers (CIAM)
45+
- title: Microsoft Entra External ID for customers (CIAM)
4646
items:
4747
# Card
4848
- title: Overview
Lines changed: 167 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,167 @@
1+
---
2+
title: Microsoft Entra SSO integration with Prosci Portal
3+
description: Learn how to configure single sign-on between Microsoft Entra ID and Prosci Portal.
4+
services: active-directory
5+
author: jeevansd
6+
manager: CelesteDG
7+
ms.reviewer: CelesteDG
8+
ms.service: active-directory
9+
ms.subservice: saas-app-tutorial
10+
ms.workload: identity
11+
ms.topic: how-to
12+
ms.date: 09/25/2023
13+
ms.author: jeedes
14+
15+
---
16+
17+
# Microsoft Entra SSO integration with Prosci Portal
18+
19+
In this tutorial, you'll learn how to integrate Prosci Portal with Microsoft Entra ID. When you integrate Prosci Portal with Microsoft Entra ID, you can:
20+
21+
* Control in Microsoft Entra ID who has access to Prosci Portal.
22+
* Enable your users to be automatically signed-in to Prosci Portal with their Microsoft Entra accounts.
23+
* Manage your accounts in one central location.
24+
25+
## Prerequisites
26+
27+
To integrate Microsoft Entra ID with Prosci Portal, you need:
28+
29+
* A Microsoft Entra subscription. If you don't have a subscription, you can get a [free account](https://azure.microsoft.com/free/).
30+
* Prosci Portal single sign-on (SSO) enabled subscription.
31+
32+
## Scenario description
33+
34+
In this tutorial, you configure and test Microsoft Entra SSO in a test environment.
35+
36+
* Prosci Portal supports **SP** initiated SSO.
37+
38+
> [!NOTE]
39+
> Identifier of this application is a fixed string value so only one instance can be configured in one tenant.
40+
41+
## Adding Prosci Portal from the gallery
42+
43+
To configure the integration of Prosci Portal into Microsoft Entra ID, you need to add Prosci Portal from the gallery to your list of managed SaaS apps.
44+
45+
1. Sign in to the [Microsoft Entra admin center](https://entra.microsoft.com) as at least a [Cloud Application Administrator](../roles/permissions-reference.md#cloud-application-administrator).
46+
1. Browse to **Identity** > **Applications** > **Enterprise applications** > **New application**.
47+
1. In the **Add from the gallery** section, type **Prosci Portal** in the search box.
48+
1. Select **Prosci Portal** from results panel and then add the app. Wait a few seconds while the app is added to your tenant.
49+
50+
Alternatively, you can also use the [Enterprise App Configuration Wizard](https://portal.office.com/AdminPortal/home?Q=Docs#/azureadappintegration). In this wizard, you can add an application to your tenant, add users/groups to the app, assign roles, and walk through the SSO configuration as well. [Learn more about Microsoft 365 wizards.](/microsoft-365/admin/misc/azure-ad-setup-guides)
51+
52+
## Configure and test Microsoft Entra SSO for Prosci Portal
53+
54+
Configure and test Microsoft Entra SSO with Prosci Portal using a test user called **B.Simon**. For SSO to work, you need to establish a link relationship between a Microsoft Entra user and the related user in Prosci Portal.
55+
56+
To configure and test Microsoft Entra SSO with Prosci Portal, perform the following steps:
57+
58+
1. **[Configure Microsoft Entra SSO](#configure-microsoft-entra-sso)** - to enable your users to use this feature.
59+
1. **[Create a Microsoft Entra ID test user](#create-a-microsoft-entra-id-test-user)** - to test Microsoft Entra single sign-on with B.Simon.
60+
1. **[Assign the Microsoft Entra ID test user](#assign-the-microsoft-entra-id-test-user)** - to enable B.Simon to use Microsoft Entra single sign-on.
61+
1. **[Configure Prosci Portal SSO](#configure-prosci-portal-sso)** - to configure the single sign-on settings on application side.
62+
1. **[Create Prosci Portal test user](#create-prosci-portal-test-user)** - to have a counterpart of B.Simon in Prosci Portal that is linked to the Microsoft Entra ID representation of user.
63+
1. **[Test SSO](#test-sso)** - to verify whether the configuration works.
64+
65+
## Configure Microsoft Entra SSO
66+
67+
Follow these steps to enable Microsoft Entra SSO in the Microsoft Entra admin center.
68+
69+
1. Sign in to the [Microsoft Entra admin center](https://entra.microsoft.com) as at least a [Cloud Application Administrator](../roles/permissions-reference.md#cloud-application-administrator).
70+
1. Browse to **Identity** > **Applications** > **Enterprise applications** > **Prosci Portal** > **Single sign-on**.
71+
1. On the **Select a single sign-on method** page, select **SAML**.
72+
1. On the **Set up single sign-on with SAML** page, click the pencil icon for **Basic SAML Configuration** to edit the settings.
73+
74+
![Screenshot shows how to edit Basic SAML Configuration.](common/edit-urls.png "Basic Configuration")
75+
76+
1. On the **Basic SAML Configuration** section, perform the following steps:
77+
78+
a. In the **Identifier** textbox, type one of the following values:
79+
80+
| **Environment**| **URL** |
81+
|------------|---------|
82+
| Production |`urn:auth0:prosci-prod:microsoft`|
83+
| Staging |`urn:auth0:prosci-staging:microsoft`|
84+
85+
b. In the **Reply URL** textbox, type one of the following URLs:
86+
87+
| **Environment**| **URL** |
88+
|------------|---------|
89+
| Production | `https://id.prosci.com/login/callback?connection=microsoft` |
90+
| Staging | `https://id-staging.prosci.com/login/callback?connection=microsoft` |
91+
92+
c. In the **Sign on URL** textbox, type one of the following URLs:
93+
94+
| **Environment**| **URL** |
95+
|------------|---------|
96+
| Production | `https://id.prosci.com` |
97+
| Staging | `https://id-staging.prosci.com` |
98+
99+
d. In the **Relay State** textbox, type one of the following URLs:
100+
101+
| **Environment**| **URL** |
102+
|------------|---------|
103+
| Production | `https://portal.prosci.com` |
104+
| Staging | `https://portal-staging.prosci.com` |
105+
106+
e. In the **Logout Url** textbox, type one of the following URLs:
107+
108+
| **Environment**| **URL** |
109+
|------------|---------|
110+
| Production | `https://id.prosci.com/logout` |
111+
| Staging | `https://id-staging.prosci.com/logout` |
112+
113+
1. On the **Set up single sign-on with SAML** page, in the **SAML Signing Certificate** section, find **Federation Metadata XML** and select **Download** to download the certificate and save it on your computer.
114+
115+
![Screenshot shows the Certificate download link.](common/metadataxml.png "Certificate")
116+
117+
1. On the **Set up Prosci Portal** section, copy the appropriate URL(s) based on your requirement.
118+
119+
![Screenshot shows to Copy configuration URLs.](common/copy-configuration-urls.png "Metadata")
120+
121+
### Create a Microsoft Entra ID test user
122+
123+
In this section, you create a test user in the Microsoft Entra admin center called B.Simon.
124+
125+
1. Sign in to the [Microsoft Entra admin center](https://entra.microsoft.com) as at least a [User Administrator](../roles/permissions-reference.md#user-administrator).
126+
1. Browse to **Identity** > **Users** > **All users**.
127+
1. Select **New user** > **Create new user**, at the top of the screen.
128+
1. In the **User** properties, follow these steps:
129+
1. In the **Display name** field, enter `B.Simon`.
130+
1. In the **User principal name** field, enter the [email protected]. For example, `[email protected]`.
131+
1. Select the **Show password** check box, and then write down the value that's displayed in the **Password** box.
132+
1. Select **Review + create**.
133+
1. Select **Create**.
134+
135+
### Assign the Microsoft Entra ID test user
136+
137+
In this section, you'll enable B.Simon to use Microsoft Entra single sign-on by granting access to Prosci Portal.
138+
139+
1. Sign in to the [Microsoft Entra admin center](https://entra.microsoft.com) as at least a [Cloud Application Administrator](../roles/permissions-reference.md#cloud-application-administrator).
140+
1. Browse to **Identity** > **Applications** > **Enterprise applications** > **Prosci Portal**.
141+
1. In the app's overview page, select **Users and groups**.
142+
1. Select **Add user/group**, then select **Users and groups** in the **Add Assignment** dialog.
143+
1. In the **Users and groups** dialog, select **B.Simon** from the Users list, then click the **Select** button at the bottom of the screen.
144+
1. If you are expecting a role to be assigned to the users, you can select it from the **Select a role** dropdown. If no role has been set up for this app, you see "Default Access" role selected.
145+
1. In the **Add Assignment** dialog, click the **Assign** button.
146+
147+
## Configure Prosci Portal SSO
148+
149+
To configure single sign-on on **Prosci Portal** side, you need to send the downloaded **Federation Metadata XML** and appropriate copied URLs from Microsoft Entra admin center to [Prosci Portal support team](mailto:[email protected]). They set this setting to have the SAML SSO connection set properly on both sides.
150+
151+
### Create Prosci Portal test user
152+
153+
In this section, you create a user called B.Simon in Prosci Portal. Work with [Prosci Portal support team](mailto:[email protected]) to add the users in the Prosci Portal platform. Users must be created and activated before you use single sign-on.
154+
155+
## Test SSO
156+
157+
In this section, you test your Microsoft Entra single sign-on configuration with following options.
158+
159+
* Click on **Test this application** in Microsoft Entra admin center. This will redirect to Prosci Portal Sign-on URL where you can initiate the login flow.
160+
161+
* Go to Prosci Portal Sign-on URL directly and initiate the login flow from there.
162+
163+
* You can use Microsoft My Apps. When you click the Prosci Portal tile in the My Apps, this will redirect to Prosci Portal Sign-on URL. For more information about the My Apps, see [Introduction to the My Apps](../user-help/my-apps-portal-end-user-access.md).
164+
165+
## Next Steps
166+
167+
Once you configure Prosci Portal you can enforce session control, which protects exfiltration and infiltration of your organization's sensitive data in real time. Session control extends from Conditional Access. [Learn how to enforce session control with Microsoft Defender for Cloud Apps](/cloud-app-security/proxy-deployment-any-app).

articles/active-directory/saas-apps/toc.yml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -2043,6 +2043,8 @@
20432043
href: proprofs-classroom-tutorial.md
20442044
- name: ProProfs Knowledge Base
20452045
href: proprofs-knowledge-base-tutorial.md
2046+
- name: Prosci Portal
2047+
href: prosci-portal-tutorial.md
20462048
- name: Proto.io
20472049
href: proto.io-tutorial.md
20482050
- name: Proware

0 commit comments

Comments
 (0)