To enhance the security and streamline the user experience, you can set up SSO Federation in Access Identity. This process involves configuring Single Sign-On (SSO) capabilities, which allow users to authenticate once and gain access to Access Evo. You'll need your system administrator or IT professional to carry out this process.
Configure your identity provider for Access Identity
Choose your identify provider and follow the steps in the linked article:
Create the security policy in Access Identity
Ensure you have a verified domain. See Become the owner of a domain.
Go to identity.access-workspace.com.au and sign in to Access Identity as the account admin or owner.
Go to the Account Settings page.
Configure the security policy
In Access Identity, select Security Policies.
In the Security policies section, select Add security policy.
Enter a name of your choice for the security policy.
Add any additional Owners. Owners are able to modify this security policy.
Configure the policy to your requirements.
(Optional) You can choose to configure Federation with Microsoft Entra ID. In the Federation section of your Security Policy:
At Identity Provider, select OpenID Connect.
At Identity Provider Name, enter Azure Entra ID or a name of your chosing.
At Grant type, choose Implicit.
At Authority URL, enter https://login.microsoftonline.com/{Directory TenantID} where {Directory TenantID} is your Azure Entra ID. In our example, pictured below, you would enter https://login.microsoftonline.com/a5b73d86-56e
At Client ID, copy and paste your Application (client) ID.
Click the Test these settings button to test your federation settings.
Click Save Changes.
Assign the security policy to your verified domain
In Access Identity, select Domains.
In the Verified Domains section, select your Domain.
Change the Security policy drop-down list to the policy you've created.
Select Save changes.
Enable the domain
Enabling the domain applies the configuration you just completed to your users.
In Access Identity, select Domains.
In the Verified domains section, select your domain.
Select Enabled.
Select Save changes.
You've now completed the set up of SSO Federation. Your employees can now log in to Access Identity using your company’s sign-in credentials.
