You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
*[Automated user provisioning](NetSuite-provisioning-tutorial.md).
48
+
* Once you configure the NetSuite you can enforce session controls, which protect exfiltration and infiltration of your organization’s sensitive data in real-time. Session controls extend from Conditional Access. [Learn how to enforce session control with Microsoft Cloud App Security](https://docs.microsoft.com/cloud-app-security/proxy-deployment-aad)
48
49
49
50
> [!NOTE]
50
51
> Because the identifier of this application is a fixed string value, only one instance can be configured in one tenant.
@@ -262,3 +263,6 @@ When you select the NetSuite tile in the Access Panel, you should be automatical
262
263
-[What is application access and single sign-on with Azure Active Directory?](https://docs.microsoft.com/azure/active-directory/active-directory-appssoaccess-whatis)
263
264
-[What is conditional access in Azure Active Directory?](https://docs.microsoft.com/azure/active-directory/conditional-access/overview)
264
265
-[Try NetSuite with Azure AD](https://aad.portal.azure.com/)
266
+
-[What is session control in Microsoft Cloud App Security?](https://docs.microsoft.com/cloud-app-security/proxy-intro-aad)
267
+
268
+
-[How to protect NetSuite with advanced visibility and controls](https://docs.microsoft.com/cloud-app-security/proxy-intro-aad)
* Once you configure the Oracle Cloud Infrastructure Console you can enforce session controls, which protect exfiltration and infiltration of your organization’s sensitive data in real-time. Session controls extend from Conditional Access. [Learn how to enforce session control with Microsoft Cloud App Security](https://docs.microsoft.com/cloud-app-security/proxy-deployment-aad)
43
45
44
46
## Adding Oracle Cloud Infrastructure Console from the gallery
45
47
@@ -59,10 +61,10 @@ Configure and test Azure AD SSO with Oracle Cloud Infrastructure Console using a
59
61
To configure and test Azure AD SSO with Oracle Cloud Infrastructure Console, complete the following building blocks:
60
62
61
63
1.**[Configure Azure AD SSO](#configure-azure-ad-sso)** to enable your users to use this feature.
64
+
1.**[Create an Azure AD test user](#create-an-azure-ad-test-user)** to test Azure AD single sign-on with B. Simon.
65
+
1.**[Assign the Azure AD test user](#assign-the-azure-ad-test-user)** to enable B. Simon to use Azure AD single sign-on.
62
66
1.**[Configure Oracle Cloud Infrastructure Console](#configure-oracle-cloud-infrastructure-console)** to configure the SSO settings on application side.
63
-
1.**[Create an Azure AD test user](#create-an-azure-ad-test-user)** to test Azure AD single sign-on with B. Simon.
64
-
1.**[Assign the Azure AD test user](#assign-the-azure-ad-test-user)** to enable B. Simon to use Azure AD single sign-on.
65
-
1.**[Create Oracle Cloud Infrastructure Console test user](#create-oracle-cloud-infrastructure-console-test-user)** to have a counterpart of B. Simon in Oracle Cloud Infrastructure Console that is linked to the Azure AD representation of user.
67
+
1.**[Create Oracle Cloud Infrastructure Console test user](#create-oracle-cloud-infrastructure-console-test-user)** to have a counterpart of B. Simon in Oracle Cloud Infrastructure Console that is linked to the Azure AD representation of user.
66
68
1.**[Test SSO](#test-sso)** to verify whether the configuration works.
67
69
68
70
### Configure Azure AD SSO
@@ -135,39 +137,7 @@ Follow these steps to enable Azure AD SSO in the Azure portal.
1. Save the **Service Provider metadata file** by clicking the **Download this document** link and upload it into the **Basic SAML Configuration** section of Azure portal and then click on **Add Identity Provider**.
1. The **IDENTITY PROVIDER GROUP** should be selected as Custom Group. The GROUP ID should be the GUID of the group from Azure Active Directory. The group needs to be mapped with corresponding group in **OCI GROUP** field.
167
-
168
-
1. You can map multiple groups as per your setup in Azure portal and your organization need. Click on **+ Add mapping** to add as many groups as you need.
169
-
170
-
1. Click **Submit**.
171
141
172
142
### Create an Azure AD test user
173
143
@@ -199,6 +169,40 @@ In this section, you'll enable B. Simon to use Azure single sign-on by granting
199
169
1. If you're expecting any role value in the SAML assertion, in the **Select Role** dialog, select the appropriate role for the user from the list and then click the **Select** button at the bottom of the screen.
200
170
1. In the **Add Assignment** dialog, click the **Assign** button.
201
171
172
+
## Configure Oracle Cloud Infrastructure Console
173
+
174
+
1. In a different web browser window, sign in to Oracle Cloud Infrastructure Console as an Administrator.
175
+
176
+
1. Click on the left side of the menu and click on **Identity** then navigate to **Federation**.
1. Save the **Service Provider metadata file** by clicking the **Download this document** link and upload it into the **Basic SAML Configuration** section of Azure portal and then click on **Add Identity Provider**.
1. The **IDENTITY PROVIDER GROUP** should be selected as Custom Group. The GROUP ID should be the GUID of the group from Azure Active Directory. The group needs to be mapped with corresponding group in **OCI GROUP** field.
201
+
202
+
1. You can map multiple groups as per your setup in Azure portal and your organization need. Click on **+ Add mapping** to add as many groups as you need.
203
+
204
+
1. Click **Submit**.
205
+
202
206
### Create Oracle Cloud Infrastructure Console test user
203
207
204
208
Oracle Cloud Infrastructure Console supports just-in-time provisioning, which is by default. There is no action item for you in this section. A new user does not get created during an attempt to access and also no need to create the user.
@@ -216,3 +220,5 @@ When you select the Oracle Cloud Infrastructure Console tile in the Access Panel
216
220
-[What is application access and single sign-on with Azure Active Directory?](https://docs.microsoft.com/azure/active-directory/active-directory-appssoaccess-whatis)
217
221
218
222
-[What is Conditional Access in Azure Active Directory?](https://docs.microsoft.com/azure/active-directory/conditional-access/overview)
223
+
224
+
-[How to protect Oracle Cloud Infrastructure Console with advanced visibility and controls](https://docs.microsoft.com/cloud-app-security/proxy-intro-aad)
0 commit comments