Submit a ticket
Welcome
Login

Configuring Azure SSO for Oneflow

Introduction

This article provides a comprehensive guide on integrating Microsoft Entra ID with Oneflow. You can easily provision users with single sign-on (SSO) functionality using the Oneflow connector on the Microsoft Entra app gallery. 

Integrating Microsoft Entra ID with Oneflow allows you to:

  • Control which users have access to Oneflow.
  • Enable your users to sign in to Oneflow with their Microsoft Entra accounts automatically.
  • Manage your accounts in one central location.

Stage 1: Install the Oneflow Application from the Microsoft Entra application gallery

Install the Oneflow application from the Microsoft Entra application gallery to start managing and provisioning Oneflow users.

Learn more:
To learn more, refer to the Microsoft documentation on Adding an enterprise application.

Stage 2: Setup Single sign-on in the Oneflow application

  1. Navigate to Identity > Applications > Enterprise applications > Oneflow > Single sign-on.
  2. On the Select a single sign-on method page, select SAML.
  3. Then follow the steps listed in the Azure SSO guide to set up the SSO on the Microsoft Entra oneflow application.

Stage 3: Setup provisioning in the Oneflow application

  1. Navigate to Identity > Applications > Enterprise applications > Oneflow > Provisioning.

  2. Click Get Started, then set the Provisioning Modeto Automatic.

  3. Under the Admin Credentials section:


    Set the Tenant URL to https://api.oneflow.com/scim/v1/
    As the Secret Token, add the SCIM token generated in the oneflow SCIM extension.
  4. In the Oneflow web application, go to Admin > Extensions.

  5. In the Notification Email field, enter the email address of a person or group who should receive the provisioning error notifications and select the Send an email notification when a failure occurs check box.

  6. Go back to Identity > Applications > Enterprise applications > Oneflow > Provisioning.
  7. Go to the Attribute-Mapping and review the attribute mappings listed in the Microsoft tutorial on provisioning users.

Stage 4: Sync the users and groups from the Microsoft Entra to Oneflow.

Once the application is fully configured, start provisioning by selecting the Start Provisioning button on the enterprise application's Provisioning page.

Did you find it helpful? Yes No

Send feedback
Sorry we couldn't be helpful. Help us improve this article with your feedback.