does anyone know how to setup sso with azure using upn instead of eamail?
does anyone know how to setup sso with azure using upn instead of eamail?
Sorry I should have expanded on this a bit more.
I have tried all the usual things -- using upn for both fields, exposing upn in azure as an optional claim.
using preferred_username in Azure - trying email in all sorts of configurations. The problem i was getting was when i set the directory id to our upn it was giving me a weird directory id as shown in the original post in this thread. now i am getting it to show my email address which is not even in ifs. so i am unclear on which way the mapping goes and to what fields. Thanks
I have asked this in a previous thread also.
Problem with users that log in with SSO authentication in IFS Cloud. | IFS Community
Hi
Have a look at following KBA and the video which explains how to setup Azure AD:
Also the following documentation on attribute mapping for external IDP would be helpful:
Hope this helps!
Good Morning
this by far is the most help I’ve gotten so far. I have seen the video although we had to use version 2 not 1 the problem that we have is when we use upn for our Azure claim we get an internal server error.
even if i remove the url per ---Please remove the User Infor endpoint from the IDP Configurations in order to work with Arritue Mappers.
we still get internal server error.
for our directory id i have tried all combinations of username and even email address.
any thought on what the internal server error is or how i can find out?
thanks
Hi Kendall,
Did you get a resolution for this?
We are upgrading to IFS Cloud. Our company uses UPN that is not the email to login to Azure and I’ve hit similar issues.
Thanks
Paul
Hi,
Just to update on my previous reply.
We have SSO working now.
Above the standard setup shown in the YouTube Video we had to ...
Add 2 Optional Claims in the Azure App Registration:
upn with Token Type ID
upn with Token Type Access
In IFS add an IdP Attribute Mapper Name= upn Claim = upn
Then obviously set the Directory ID of the user to be the Azure upn.
Regards
Paul
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.