Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.


To enable Azure AD Authentication integration for your organization, Benemen Authenticator application must be registered to customer Active Directory in Azure management portal. 

/note 
If Multi-Factor Authentication (MFA) is enabled on Azure AD, Benemen Datacenter IP Addresses (80.88.187186.0/2423) must be white listedwhitelisted. More information: https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-mfa-mfasettings#trusted-ips

Anchor
_Toc430289616
_Toc430289616
Registering the Authenticator Application

1. Log in to https://portal.azure.com

2. Select Azure Active Directory -> App registrations

  Image Removed
 

...

3. Select New application registration

...

4. Enter details and click Register

  • Name for application, for example 'Benemen Authenticator'

  • Accounts in this organization only

  • Redirect URI is not needed

...


  •  

...

5. Go to Authentication tab and configure following

  1. Select Implicit grant: ID tokens

  2. Treat application as a public client: Yes

  3. Click Save

    Image Removed

...


6. Go to Permissions tab

  1. Make sure that app have User.Read permission

  2. Click Grant admin consent and Yes to confirmation

    Image Removed Image Removed

    Image AddedImage Added

7. Make sure that there is a green mark for Admin consent

...

...

8. Go to Overview tab

  • Send Application ID value to Benemen

...

...