If you have licensed the AAD add-on from iRely, then you need to do the following to get it configured for your instance of iRely i21. Below are the 4 steps that are required.
Step 1 - Create an i21 Azure Group (User Role)
This group will contain users that will have access to i21 and will serve as their user role.
- Log into your Azure Active Directory
- Click Groups
- Click New group
- Enter the following for the New Group:
- Group type = Security
Group name = i21:[i21UserRole]
- Replace [i21UserRole] with any roles from i21. E.g. i21:PETRO ADMIN. Anything after "i21:" will be the role of the users in this group.
- Group description = Enter any description you want for this group.
- Membership type = Assigned
- Under Members, click No members selected hyperlink then add members/users.
- Click Create
Step 2 - App Registration
- Go to Azure Active Directory
- Click App registrations then New registration
- In the Register an application form, enter the following:
- Name = iRely i21
- Supported account types = Accounts in this organizational directory only (single tenant)
- Redirect URI (web) = The URL of the i21 plus identityserver/
- Click Register
- Go back to App registrations and select the app that you have just created (iRely i21)
- Click Certificates & secrets and create a Secret
- Copy the secret value and save it locally.
- Under API permissions, verify that the following are present especially those underlined ones. If not, add those permissions.
Step 3 - Send the following details to iRely
- Go to Azure Active Directory
- Select App registrations and select iRely i21 from the list.
- Copy the following values from the Overview and Certificates & secrets section and provide them to iRely in your help desk ticket.
- Application (client) ID
- Directory (tenant) ID
- Secret
Overview
Content Tools