Integrating with Azure AD

Nate Klingenstein ndk at signet.id
Thu Jul 15 22:36:38 UTC 2021


Igor,

It's not entirely clear to me whether you intend to use Azure AD as your authentication mechanism and user store for Shibboleth or whether you intend to use Shibboleth with local credentials and attributes to login to Azure and other services hosted there via vanilla SAML 2.0, but either one is possible and well-documented.

Former:
https://shibboleth.atlassian.net/wiki/spaces/KB/pages/1467056889/Using+SAML+Proxying+in+the+Shibboleth+IdP+to+connect+with+Azure+AD

Latter:
https://docs.microsoft.com/en-us/previous-versions/azure/azure-services/jj205463(v=azure.100)

Take care,
Nate.

--------
Signet, Inc.
The Art of Access ®

https://www.signet.id

-----Original message-----
From: Castellanos, Igor
Sent: Thursday, July 15 2021, 10:28 pm
To: users at shibboleth.net
Subject: Integrating with Azure AD

Hi all,

We are thinking about using our existing campus Shibboleth IdP authentication and integrate with Azure AD to provide Azure services.  I’m not sure if I’m explaining this correctly, but basically, this would mean that our limited set of
 users would be automatically logged in to Azure using the existing SSO in order to preserve our log-in-once strategy.

Is this something anyone has played with and/or gotten to work successfully? If so, I’d be interested in hearing any ideas.

Thank you!

_________________________________

Igor Castellanos

Sr. Systems Architect

Office for Research Information Systems (ORIS)

University of California, Los Angeles

10889 Wilshire Blvd., Suite 800

Los Angeles, CA 90024

Ph: 310.794.2945

Email:
icastellanos at research.ucla.edu <mailto:icastellanos at research.ucla.edu>

--

For Consortium Member technical support, see https://shibboleth.atlassian.net/wiki/x/ZYEpPw

To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net




More information about the users mailing list