You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/active-directory/saas-apps/netskope-cloud-security-tutorial.md
+19-37Lines changed: 19 additions & 37 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -1,5 +1,5 @@
1
1
---
2
-
title: "Tutorial: Azure Active Directory single sign-on (SSO) integration with Netskope Administrator Console | Microsoft Docs"
2
+
title: 'Tutorial: Azure AD SSO integration with Netskope Administrator Console'
3
3
description: Learn how to configure single sign-on between Azure Active Directory and Netskope Administrator Console.
4
4
services: active-directory
5
5
author: jeevansd
@@ -9,30 +9,32 @@ ms.service: active-directory
9
9
ms.subservice: saas-app-tutorial
10
10
ms.workload: identity
11
11
ms.topic: tutorial
12
-
ms.date: 04/02/2021
12
+
ms.date: 03/15/2022
13
13
ms.author: jeedes
14
14
---
15
15
16
-
# Tutorial: Azure Active Directory single sign-on (SSO) integration with Netskope Administrator Console
16
+
# Tutorial: Azure AD SSO integration with Netskope Administrator Console
17
17
18
18
In this tutorial, you'll learn how to integrate Netskope Administrator Console with Azure Active Directory (Azure AD). When you integrate Netskope Administrator Console with Azure AD, you can:
19
19
20
-
- Control in Azure AD who has access to Netskope Administrator Console.
21
-
- Enable your users to be automatically signed-in to Netskope Administrator Console with their Azure AD accounts.
22
-
- Manage your accounts in one central location - the Azure portal.
20
+
* Control in Azure AD who has access to Netskope Administrator Console.
21
+
* Enable your users to be automatically signed-in to Netskope Administrator Console with their Azure AD accounts.
22
+
* Manage your accounts in one central location - the Azure portal.
23
23
24
24
## Prerequisites
25
25
26
26
To get started, you need the following items:
27
27
28
-
- An Azure AD subscription. If you don't have a subscription, you can get a [free account](https://azure.microsoft.com/free/).
29
-
- Netskope Administrator Console single sign-on (SSO) enabled subscription.
28
+
* An Azure AD subscription. If you don't have a subscription, you can get a [free account](https://azure.microsoft.com/free/).
29
+
* Netskope Administrator Console single sign-on (SSO) enabled subscription.
30
30
31
31
## Scenario description
32
32
33
33
In this tutorial, you configure and test Azure AD SSO in a test environment.
34
34
35
-
- Netskope Administrator Console supports **SP and IDP** initiated SSO.
35
+
* Netskope Administrator Console supports **SP and IDP** initiated SSO.
36
+
37
+
* Netskope Administrator Console supports just-in-time user provisioning.
36
38
37
39
> [!NOTE]
38
40
> Identifier of this application is a fixed string value so only one instance can be configured in one tenant.
@@ -71,7 +73,7 @@ Follow these steps to enable Azure AD SSO in the Azure portal.
1. On the **Basic SAML Configuration** section, if you wish to configure the application in **IDP** initiated mode, enter the values for the following fields:
76
+
1. On the **Basic SAML Configuration** section, if you wish to configure the application in **IDP** initiated mode, perform the following step:
75
77
76
78
In the **Reply URL** text box, type a URL using the following pattern:
77
79
`https://<tenant_host_name>/saml/acs`
@@ -180,44 +182,24 @@ In this section, you'll enable B.Simon to use Azure single sign-on by granting a
180
182
181
183
### Create Netskope Administrator Console test user
182
184
183
-
1. Open a new tab in your browser, and sign in to your Netskope Administrator Console company site as an administrator.
184
-
185
-
1. Click on the **Settings** tab from the left navigation pane.

192
-
193
-
1. Click **Users** tab.
194
-
195
-

196
-
197
-
1. Click **ADD USERS**.
198
-
199
-

200
-
201
-
1. Enter the email address of the user you want to add and click **ADD**.
202
-
203
-

185
+
In this section, a user called B.Simon is created in Netskope Administrator Console. Netskope Administrator Console supports just-in-time user provisioning, which is enabled by default. There's no action item for you in this section. If a user doesn't already exist in Netskope Administrator Console, a new one is created after authentication.
204
186
205
187
## Test SSO
206
188
207
-
In this section, you test your Azure AD single sign-on configuration with following options.
189
+
In this section, you test your Azure AD single sign-on configuration with following options.
208
190
209
191
#### SP initiated:
210
192
211
-
- Click on **Test this application** in Azure portal. This will redirect to Netskope Administrator Console Sign on URL where you can initiate the login flow.
193
+
* Click on **Test this application** in Azure portal. This will redirect to Netskope Administrator Console Sign on URL where you can initiate the login flow.
212
194
213
-
- Go to Netskope Administrator Console Sign-on URL directly and initiate the login flow from there.
195
+
* Go to Netskope Administrator Console Sign-on URL directly and initiate the login flow from there.
214
196
215
197
#### IDP initiated:
216
198
217
-
- Click on **Test this application** in Azure portal and you should be automatically signed in to the Netskope Administrator Console for which you set up the SSO
199
+
* Click on **Test this application** in Azure portal and you should be automatically signed in to the Netskope Administrator Console for which you set up the SSO.
218
200
219
-
You can also use Microsoft My Apps to test the application in any mode. When you click the Netskope Administrator Console tile in the My Apps, if configured in SP mode you would be redirected to the application sign on page for initiating the login flow and if configured in IDP mode, you should be automatically signed in to the Netskope Administrator Console for which you set up the SSO. For more information about the My Apps, see [Introduction to the My Apps](https://support.microsoft.com/account-billing/sign-in-and-start-apps-from-the-my-apps-portal-2f3b1bae-0e5a-4a86-a33e-876fbd2a4510).
201
+
You can also use Microsoft My Apps to test the application in any mode. When you click the Netskope Administrator Console tile in the My Apps, if configured in SP mode you would be redirected to the application sign on page for initiating the login flow and if configured in IDP mode, you should be automatically signed in to the Netskope Administrator Console for which you set up the SSO. For more information about the My Apps, see [Introduction to the My Apps](../user-help/my-apps-portal-end-user-access.md).
220
202
221
203
## Next steps
222
204
223
-
Once you configure Netskope Administrator Console you can enforce session control, which protects exfiltration and infiltration of your organization’s sensitive data in real time. Session control extends from Conditional Access. [Learn how to enforce session control with Microsoft Defender for Cloud Apps](/cloud-app-security/proxy-deployment-any-app).
205
+
Once you configure Netskope Administrator Console you can enforce session control, which protects exfiltration and infiltration of your organization’s sensitive data in real time. Session control extends from Conditional Access. [Learn how to enforce session control with Microsoft Defender for Cloud Apps](/cloud-app-security/proxy-deployment-any-app).
0 commit comments