This guide explains how to set up an OpenID Client in Azure AD, for use with Argus OpenID integration.
- Log on to https://portal.azure.com with your administrator account
- Choose a suitable/descriptive name, e.g. "Argus". Keep selection for "Single tenant" and "Web"
- Go to the new application instance
- Copy the
client_idfrom the created application, and send this to mnemonic (see first screenshot)
- Enter the Redirect URI as https://portal.mnemonic.no/spa/authentication/openid/provider/myprovider/authenticate
(where "myprovider" is provided/agreed with mnemonic). See second screenshot.
Grant admin consent for <your organization>
When mnemonic has received the
client_id and completed configuration in their end, you should be able to test SSO.
The default setup with Argus will use the
Currently, all users must be defined up front in Argus, and configured with the email address that matches the email address returned by Azure in the
If desirable, you can add authorization of users in Azure AD, before they are redirected back to Argus. This is done by adding users and/or groups to the
Users and groups tab in the application instance under
Enterprise Applications .
If this is set up, only users added to the application will be able to successfully redirect back to Argus.