🎓Azure AD

How to configure Azure AD IdentityProvider with Aidbox

Register an application in Azure

  • Find App Registration in search bar

  • Click New Registration

  • Fill form. For Redirect URI choose web as a platform and input https://<box-url>/auth/callback/azure

  • Click Certificates & secrets > New client secret and create a new secret. Save Value for next step

Create IdentityProvider in Aidbox

  • Open REST console in Aidbox UI and create IdentityProvider

POST /IdentityProvider
content-type: text/yaml
accept: text/yaml

scopes:
  - profile
  - openid
system: azure
userinfo_endpoint: <your userinfo endpoint>
authorize_endpoint: <your authorization endpoint>
token_endpoint: <your token endpoint>
client:
  id: <your application (client) id>
  secret: <your secret value from previous step>
resourceType: IdentityProvider
title: Azure AD
active: true
id: azure

You can find application (client) id on App Overview page

and your endpoints by clicking on Endpoints and visiting OpenID Connect metadata document

Log in to Aidbox

Go to your Aidbox base URL. You will be redirected to the log in page where you should now see Sign in with Azure AD button. Press this button and log in with Azure AD user. This user will be logged in to Aidbox Console but he won’t have any permissions. Read more in Access Control Section about permissions.

Last updated

Change request #2416: