Page History
If you have licensed the AAD add-on from iRely then you need to do the following to get it working on your instance of i21. Below are the 4 steps to setup configure your Azure Active Directory (AAD) to work with i21.
Step 1 - Create an i21 Azure Group (role)
...
- Log into your Azure Active Directory
- Click Groups
- Click New group
- Enter the following for the New Group:
- Group type = Securityunmigrated-wiki-markup
Group
name
=
*i21:
\[i21UserRole
\]
*unmigrated-wiki-markup- Replace *\ [i21UserRole\] * with any roles from i21. E.g. {*}i21:PETRO ADMIN{*}. Anything after "i21:" will be the role of the users in this group.
- Group description = The group descriptionEnter any description you want for this group.
- Membership type = Assigned
- Under Members, click No members selected hyperlink then add members/users.
- Click Create
Step 2- App Registration
- Go to Azure Active Directory
- Click App registrations then New registration
- In the Register an application form, enter the following:
- Name = iRely i21
- Supported account types = Accounts in this organizational directory only (single tenant)
- Redirect URI (web) = The URL of the i21 plus identityserver/.
- Click Register
- Go back to App registrations and select the app that you have just created (iRely i21)
- Click Certificates & secrets and create a Secret
- Copy the secret value and save it locally.
- Under API permissions, verify that the following are present especially those underlined ones. If not, add those permissions.
Step 3 - Send the following details to iRely
- Goto Go to Azure Active Directory
- Select App registrations and select iRely i21 from the list.
- Copy the following values from the iRely i21 appthe Overview and Certificates & secrets section and provide them to iRely in your help desk ticket.
- Application (client) ID
- Directory (tenant) ID
- Secret
Step 4 - Mapping existing i21 users to Azure Active Directory users
...
Overview
Content Tools