Setting Up Single Sign-On (SSO) with Microsoft Entra for Eclipse Aura

Modified on Fri, 19 Sep at 12:01 PM

What is SSO?

Single Sign-On (SSO) allows users to securely log in to Eclipse Aura using their existing organizational credentials (such as their Microsoft 365/Entra ID account), instead of managing separate usernames and passwords.

With SSO enabled, users authenticate once with Microsoft Entra and then gain seamless access to Eclipse Aura without having to re-enter credentials.


How SSO Works with Eclipse Aura

When SSO is enabled:

  1. A user navigates to Eclipse Aura.

  2. Instead of entering Eclipse Aura credentials, they click "Sign in with Microsoft" and are redirected to the Microsoft Entra login page.

  3. The user signs in with their Microsoft 365/Entra ID credentials.

  4. Entra verifies their identity and grants access back to Eclipse Aura.


Prerequisites

Before configuring SSO, ensure:

  • You have a Microsoft Entra tenant (formerly Azure AD).

  • You have Admin access to both Eclipse Aura and Microsoft Entra.

  • Eclipse Aura is added as an Enterprise Application in Microsoft Entra.



Enabling SSO in Eclipse Aura

To allow SSO using Microsoft Entra for your Eclipse Aura database, the Entra Tenant needs to be added and approved. The tenant can be added manually, or it will prepopulate ready for approval for any new tenants when trying to login with that tenant that has not been previously seen.


Tenant settings can be found under Settings then System Options, then clicking the Identity Tenants tab.


The domain(s) associated with the Entra account needs to be verified by a DNS TXT record and the tenant to be approved. Please contact your website domain name provider for assistance on updating DNS records. Once the TXT record has been added for the domain (click the copy icon for the value), click save and this will attempt to verify the record.


Check with your Microsoft Entra account of your Entra Identifier.




Configuring SSO in Eclipse Aura

Database wide settings can be found under Settings then System Options, then clicking the Security tab.


Auto Register User From Identity

This will auto create users who do not exist in Eclipse Aura based on matching their login email, firstname and surname.


Update Staff From Identity 
This will update Eclipse user information form user information pulled from the Entra account.


Restrict User to only login by email address 

This will force user login via email only.


Send all security events notifications to these emails 

For security events such as a new tenant to be approved, notify this email address.







Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article

Click here to leave feedback or comments