(English version)

<aside> ⚠️ Bemærk venligst.

Azure configuration

Introduction

This guide describes Azure's configuration to synchronize Groups and User principals from Azure Entra ID to DocuNote. This configuration is needed for logging in with Microsoft Identity on DocuNote Web.

(See more about Microsoft Identity login til DocuNote Web - Konfiguration af Microsoft Azure portal)

1. Click on Microsoft Entra ID

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/395a7c15-ee9b-4eec-81b2-20e0839fb9cd/ff2ac710-3400-4bcf-bd93-ec061d0fa5ac.png?crop=focalpoint&fit=crop&fp-x=0.2430&fp-y=0.8113&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=206&mark-y=746&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTMlMkNGRjc0NDImdz0xNzEmaD0xNzEmZml0PWNyb3AmY29ybmVyLXJhZGl1cz0xMA%3D%3D

2. Expand on the Manage node

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/3f8d56ba-64c0-4e23-af66-9e5298d1407d/fbfcad65-9d65-4f69-b191-f0ee9717029f.png?crop=focalpoint&fit=crop&fp-x=0.0921&fp-y=0.2984&fp-z=2.0876&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=7&mark-y=339&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTQlMkNGRjc0NDImdz00NDgmaD02NiZmaXQ9Y3JvcCZjb3JuZXItcmFkaXVzPTEw

3. Click on App registrations

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/7618176e-3d70-4461-a050-324c35856b6b/1b686b6e-33a7-4d89-9668-109294b9e16b.png?crop=focalpoint&fit=crop&fp-x=0.0866&fp-y=0.6370&fp-z=2.1374&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=7&mark-y=338&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTQlMkNGRjc0NDImdz00MzEmaD02NyZmaXQ9Y3JvcCZjb3JuZXItcmFkaXVzPTEw

4. Click on New registration

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/867f4958-1737-49aa-a9b3-dae69cf8ecc3/e9d45fa9-16f2-47cb-8564-542af9878ac4.png?crop=focalpoint&fit=crop&fp-x=0.2311&fp-y=0.1587&fp-z=2.5396&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=457&mark-y=256&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTQlMkNGRjc0NDImdz0yODYmaD04OCZmaXQ9Y3JvcCZjb3JuZXItcmFkaXVzPTEw

5. Give the app a name like "DocuNoteEntraIdSynchronization"

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/229fa02d-5763-4e42-8f08-ae9ebfd08245/bad63bcf-30bc-48d8-95e1-96bc0c972588.png?crop=focalpoint&fit=crop&fp-x=0.4778&fp-y=0.4340&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=22&mark-y=288&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTMlMkNGRjc0NDImdz0xMTAzJmg9NDQmZml0PWNyb3AmY29ybmVyLXJhZGl1cz0xMA%3D%3D

6. Click on Register

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/4a3d1a83-57d2-4ecc-948f-43a5ee4728d5/998063ef-7c3b-48d1-97de-99536aa681ca.png?crop=focalpoint&fit=crop&fp-x=0.0426&fp-y=0.9661&fp-z=2.7453&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=35&mark-y=640&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTQlMkNGRjc0NDImdz0yMTImaD02OSZmaXQ9Y3JvcCZjb3JuZXItcmFkaXVzPTEw

7. Copy the Application (client) ID to a safe place

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/558ce358-46d0-4601-95de-9cb4f67d741e/852a6376-7b72-4066-aba1-fcf883c362b6.png?crop=focalpoint&fit=crop&fp-x=0.2584&fp-y=0.3274&fp-z=2.0000&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=1092&mark-y=352&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTQlMkNGRjc0NDImdz01MCZoPTUwJmZpdD1jcm9wJmNvcm5lci1yYWRpdXM9MTA%3D

8. Copy the Directory (tenant) ID to a safe place

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/5744bf0b-747e-49ac-b532-f83953e25dfd/b8d911c4-4a86-483c-b899-a68a86a9b3a3.png?crop=focalpoint&fit=crop&fp-x=0.2547&fp-y=0.3274&fp-z=2.0000&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=1100&mark-y=440&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTQlMkNGRjc0NDImdz01MCZoPTUwJmZpdD1jcm9wJmNvcm5lci1yYWRpdXM9MTA%3D

9. Click on Certificates & secrets

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/344e2e4b-cd6a-476c-9643-afe2ed3e1471/ca805a97-4c18-4052-bb81-085e658691ad.png?crop=focalpoint&fit=crop&fp-x=0.0921&fp-y=0.4000&fp-z=2.0876&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=7&mark-y=339&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTQlMkNGRjc0NDImdz00NDgmaD02NiZmaXQ9Y3JvcCZjb3JuZXItcmFkaXVzPTEw

10. Click on New client secret

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/a6473e51-fa57-4b8a-a545-2c27b6a7c7b8/7fad01e8-fbab-4d3a-9feb-ec0b8b955457.png?crop=focalpoint&fit=crop&fp-x=0.4132&fp-y=0.7963&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=396&mark-y=495&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTMlMkNGRjc0NDImdz0yMDAmaD02MCZmaXQ9Y3JvcCZjb3JuZXItcmFkaXVzPTEw

11. Give the secret a name like "DocuNoteEntraIdSecret"

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/4abd5bf3-dc19-45dc-a26e-0c017ca3a460/8d1b4afb-2763-4cb1-b67f-885e4059716a.png?crop=focalpoint&fit=crop&fp-x=0.7183&fp-y=0.4205&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=551&mark-y=136&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTMlMkNGRjc0NDImdz02MjMmaD02NiZmaXQ9Y3JvcCZjb3JuZXItcmFkaXVzPTEw

12. Select Expire period, e.g. 24 months

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/8794dd5d-ff05-45bd-bf0c-c2305d145ebb/3d494111-9228-42d5-b4ae-d3d8c9ca5a8a.png?crop=focalpoint&fit=crop&fp-x=0.7247&fp-y=0.7091&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=552&mark-y=531&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTMlMkNGRjc0NDImdz02MzYmaD04NCZmaXQ9Y3JvcCZjb3JuZXItcmFkaXVzPTEw

13. Click on Add

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/043335f4-c4fd-4525-8d84-f191834e8754/15a855ad-b1aa-4c43-b211-4b11f16a7056.png?crop=focalpoint&fit=crop&fp-x=0.0981&fp-y=0.5231&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=27&mark-y=37&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTMlMkNGRjc0NDImdz0xODImaD02NiZmaXQ9Y3JvcCZjb3JuZXItcmFkaXVzPTEw

14. Copy the Secret ID to a safe place

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/9776c63a-70d1-4bd3-a0fd-7bc5da81ed01/936e1c62-3f75-485b-a1e2-829e560d2cc8.png?crop=focalpoint&fit=crop&fp-x=0.5000&fp-y=0.5000&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=1103&mark-y=89&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTMlMkNGRjc0NDImdz0zNSZoPTMyJmZpdD1jcm9wJmNvcm5lci1yYWRpdXM9MTA%3D

15. Click API permissions, Add a permission

Untitled

16. Click on Microsoft Graph…

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/79c49edf-a947-4c06-b0a2-9adb226f64c0/91b926a0-936c-4f24-b0a2-a4e297e07b4c.png?crop=focalpoint&fit=crop&fp-x=0.5081&fp-y=0.6597&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=49&mark-y=276&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTMlMkNGRjc0NDImdz0xMTIxJmg9MjA2JmZpdD1jcm9wJmNvcm5lci1yYWRpdXM9MTA%3D

17. Click on Application permissions

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/e45ef570-6984-4f19-9ef7-ce9e87955467/4a836b41-167c-49f2-803d-0b3818fb1f79.png?crop=focalpoint&fit=crop&fp-x=0.7346&fp-y=0.6565&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=600&mark-y=228&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTMlMkNGRjc0NDImdz01NjMmaD0xMjEmZml0PWNyb3AmY29ybmVyLXJhZGl1cz0xMA%3D%3D

18. Search GroupMember node

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/32a6b70b-f800-4414-8719-daac43297508/ae5ea96f-dcbf-4096-8241-37e2c1aa951c.png?crop=focalpoint&fit=crop&fp-x=0.4630&fp-y=0.4603&fp-z=3.0337&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=567&mark-y=338&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTQlMkNGRjc0NDImdz02NyZoPTY3JmZpdD1jcm9wJmNvcm5lci1yYWRpdXM9MTA%3D

19. Select GroupMember.Read.All permisson

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/073593c5-de63-4cfc-b78b-c25c5aa5db6f/920b0f91-74c3-4538-ac72-3e371b4fa4cd.png?crop=focalpoint&fit=crop&fp-x=0.5059&fp-y=0.5079&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=21&mark-y=90&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTMlMkNGRjc0NDImdz0xMTcxJmg9Mjc2JmZpdD1jcm9wJmNvcm5lci1yYWRpdXM9MTA%3D

20. Identify User node and select User.Read.All, then click Add permissions

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/e8c8ed97-e1d7-4f03-bb3a-63daed29dd10/0c4124fc-4126-4117-a43d-b29e7a848f06.png?crop=focalpoint&fit=crop&fp-x=0.1075&fp-y=0.9361&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=25&mark-y=614&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTMlMkNGRjc0NDImdz0yMDcmaD00NSZmaXQ9Y3JvcCZjb3JuZXItcmFkaXVzPTEw

21. Click on Grant admin consent for MSFT

https://images.tango.us/workflows/a436706f-926d-4359-b392-cd6389798fa3/steps/b2c0fa5c-2146-4986-8a15-7172559bc3cf/c4341add-95be-4187-8339-47a618aff0a1.png?crop=focalpoint&fit=crop&fp-x=0.2510&fp-y=0.1058&w=1200&border=2%2CF4F2F7&border-radius=8%2C8%2C8%2C8&border-radius-inner=8%2C8%2C8%2C8&mark-x=173&mark-y=8&m64=aHR0cHM6Ly9pbWFnZXMudGFuZ28udXMvc3RhdGljL2JsYW5rLnBuZz9tYXNrPWNvcm5lcnMmYm9yZGVyPTMlMkNGRjc0NDImdz0yNTYmaD01MCZmaXQ9Y3JvcCZjb3JuZXItcmFkaXVzPTEw

22. Grant admin consent

Untitled


(Gå til toppen af siden)