- 10 Feb 2025
- 1 Minute to read
- Print
- PDF
Configuring Microsoft Active Directory as Identity Provider
- Updated on 10 Feb 2025
- 1 Minute to read
- Print
- PDF
Microsoft Active Directory (AD) is a directory service developed by Microsoft for managing and organizing resources in a network. verifies the identity of users and devices before granting access to network resources. This is usually done via a username and password.
This article provides a step-by-step guide to configuring Microsoft Active Directory as the Identity Provider for all your services.
Prerequisites
Please ensure you have created the SSO configuration for the service you want to access and set Microsoft Active Directory as its Identity Provider.
Also, ensure that the user(s) is present in the Microsoft Active Directory and the respective service portal that you are trying to access.
The same user(s) must be present in Scalefusion and the SSO configuration of the respective service is applied to it.
Step 1: Configuring Microsoft Active Directory as an Identity Provider on Scalefusion dashboard
Navigate to OneIdP > Identity Providers.
Click on the New Provider button.
Select Microsoft Active Directory and click on Next.
You will see a message as shown below if you have not set up the On-Prem Connector and completed the configuration.
Click on the Finish button.
Please refer to our guide on setting up the On-Prem Connector.
Step 2: Associating Active Directory Identity Provider with a Directory
Navigate to OneIdP > Directory.
Click on the 3-dots under Actions for the concerned Domain.
Click on Settings.
Go to the Federated Authentication tab and toggle on the “Enable Scalefusion OnPremise Connector as Authentication source” button. Click Next and Save it.
This completes the setup. The users will see the Active Directory page for authentication whenever they access an application.
User Login Flow
When the user enters their email on the service login page, they will be redirected to OneIdP. From there, OneIdP will redirect the user to the chosen identity provider (Microsoft Active Directory, in this case) for authentication. Once the identity provider authenticates the user, they will be granted access to the service.