A step-by-step guide to setting up with Microsoft Entra account in preparation for Gladstone SSO.
Introduction
This article will provide you with a step-by-step guide on all configuration requirements when activating the Gladstone SSO feature. All user access control will consequently be controlled through your Microsoft Entra tennant and no longer by the Gladstone core solution. Please be aware, this step should be done prior to configuring your Gladstone products.
Step 1: Configuration of your Microsfot Entra Tenant
- Log into yout Microsoft Entra Admin Center
- On the left hand menu, select Identity > Applications > Enterprise Applications
- This should navigate you to Enterprise applications | All applications. Select the option "New application" underneath the title.
- Select "Create you own application"
- Enter a name for the application, for example GladstoneGo. This is just a label to identify it within the Entra admin center, so the naming won't affect the integration. Select the "Integrate any other application" option and select Create.
- This will populate your new application and provide an Overview page. Select "Users and Groups" from the left hand menu (it may also be available in the Getting Started menu). This will take you to a page where Users and Groups on your Entra tenancy can be assigned access to the SSO integration.
Note: As this SSO feature covers access for both Operator and Gladstone360, permissions for the applications themselves are configured within the Gladstone Management Console as previous.
- Once users and groups have been assigned, select the "Single Sign-on" option from the left hand menu (or "Set up single sign" on in the Getting Started menu)
- Select "SAML" as the single sign-on method
- Select "Edit" on the Basic SAML Configuration section
- Within the Entity ID section, provide the following configuration details:
- Identifier = gladstonesoftware.cloud
- Reply URL = https://samlauthentication.gladstonesoftware.cloud/api/samlauthentication/log-in-callback
- Within the SAML Certificates section, copy and make note of the "App Federation Metadata Url". This will be required when configuring Operator.