You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 17 Next »


For administrators

On this page:

Minimum Version Requirements


4.30

Prerequisites


'Third Party Login' must be enabled.

Self Configurable


Yes

Business Function


Third party login

B2B/B2C/Both


Both

Third Party Costs


n/a

Prerequisites

Microsoft AD Sign In must be implemented by Commerce Vision. For 4.30+

Overview

Single sign-in using Microsoft Azure Active Directory allows your Website Users to authenticate and sign in with their Microsoft credentials. Access can be restricted, forced or granted by email address domain name. On the login page/popup, along with the userid/password method, sign in with Microsoft is available. If the user selects this, your site's settings will determine whether they can login. Unless restricted, the user can access their basic profile data. If they are already signed into their Microsoft account at this time, they will be logged in without having to approve it,  

 


Step-by-step guide

This guides you through the configurations for Microsoft Azure Sign-In for your site.

Before you begin: you have access to the Application (Client) ID and Directory (Tenant) ID, if applicable and these have not been entered.  

Configure Microsoft Sign-in in the CMS 

  1. In the CMS, go to Settings → Settings → Feature Management → User

  2. Click Configure.


  3. Scroll down to the Microsoft section. 



  4. To enable this feature on your site, toggle ON Enabled

  5. In Application (Client) ID, enter the application ID key, if it's not already there. 

  6. In Directory (Tenant) ID -For Single Tenant Use Only, enter the key if your application is for 'Single Tenant' (single directory), otherwise leave empty.  

  7. The Invalid User Message appears when the Microsoft User account cannot be linked to a registered User. If needed, change the message to suit. 


  8. The Declined Consent Message appears if the User cancels the authentication process before completing the sign in. They will be returned to the login page. If needed, change the message to suit.



  9. To specify domain-based rules, toggle ON Enable Domain Restrictions.

  10. To force users from specific domains to use Microsoft Sign In, enter each domain, then press Enter or Tab.


  11. To allow only certain domains to use Microsoft sign in, in Allowed Microsoft Sign In Domains, enter each domain, then press Enter or Tab.

  12. In Microsoft Sign In Not Allowed Message, edit the message displayed to the user when they are not permitted to use Microsoft Sign In.

  13. In Username/password Login Not Allowed Message, edit the message displayed to the user when they must use Microsoft Sign In.

  14. To save your settings, click Save or Save & Exit.

  15. Reset the dictionary to ensure changes are made live. 

  16. IMPORTANT - If using Microsoft Start App, restart the application.

  17. Check Microsoft sign-in is now available on your website.


Related Resources



  • No labels