The SI integration with Microsoft Entra ID, a leading cloud-based directory and identity management services solution for businesses, allows you to log into SI using the same credentials used in Microsoft Entra ID.
Thus, SI provides a Single Sign-On option. This means that no passwords are created or stored in SI, adding a layer of security for you.
To enable and configure the integration with Entra ID, you will need to register the SI app in Entra ID and then enable the integration on SI.
Microsoft has rebranded Azure AD to Microsoft Entra ID. In this article, the screenshots of the workflows are old and are from Azure AD.
On Entra ID
1/ Sign in to your instance of Entra ID using this link: https://entra.microsoft.com/.
You must be an “Application Administrator” or a “Global Administrator” in Entra ID to configure the SI app in Entra ID.
2/ Click App registrations
3/ Click New registration.
4/ Enter a name. DTOOLSSI is a fine name.
5/ Leave the "Single tenant only" option selected and click the Register button.
6/ Click Authentication (Preview) under Manage.
7/ Click Add Redirect URI.
8/ Click Mobile and desktop applications.
9/ In the Configure Desktop + devices window, select the first option and click the Configure button.
10/ Click the X to close the side panel
11/ Click the Settings tab, then toggle Allow public client flows to "Enabled", and then click the Save button.
11/ Click API permissions under Manage.
12/ Click Add a permission.
13/ Click Microsoft Graph.
14/ Click Delegated permissions.
15/ Search for User.Read.All. Expand the Users sections and tick the checkbox to select the permission, then click the Add Permissions button.
16/ Click Grant admin consent for DTOOLSSI (or whatever you decided to name the integration in step 4).
17/ Click Overview and note the Application (client) ID and Directory (tenant) ID values.
Optional Permission
If you want to add additional functionality of mapping your Entra ID security groups to SI User Groups, follow these steps.
1/ Click API permissions under Manage.
2/ Click Add a permission.
3/ Click Microsoft Graph.
4/ Click Delegated permissions.
5/ Search for Group.Read.All. Expand the Users sections and tick the checkbox to select the permission, then click the Add Permissions button.
6/ Click Grant admin consent for DTOOLSSI (or whatever you decided to name the integration in step 4 in section above).
In System Integration Client
1/ Open System Integrator and click Start > Setup > Control Panel.
2/ Double-click the Microsoft Entra ID icon.
3/ Select the Enable integration checkbox, enter your client ID and tenant ID from Entra ID, and then click Save.
You will be prompted to sign in to your Entra ID instance.
Once you sign in, you will get a confirmation that the integration is enabled.























