Skip to main content

Set up SSO federation in Access Identity

Updated over 2 months ago

To enhance the security and streamline the user experience, you can set up SSO Federation in Access Identity. This process involves configuring Single Sign-On (SSO) capabilities, which allow users to authenticate once and gain access to Access Evo. You'll need your system administrator or IT professional to carry out this process.

Configure your identity provider for Access Identity

Choose your identify provider and follow the steps in the linked article:

Create the security policy in Access Identity

  1. Ensure you have a verified domain. See Become the owner of a domain.

  2. Go to identity.access-workspace.com.au and sign in to Access Identity as the account admin or owner.

Configure the security policy

  1. In Access Identity, select Security Policies.

  2. In the Security policies section, select Add security policy.

  3. Enter a name of your choice for the security policy.

  4. Add any additional Owners. Owners are able to modify this security policy.

  5. Configure the policy to your requirements.

  6. (Optional) You can choose to configure Federation with Microsoft Entra ID. In the Federation section of your Security Policy:

    • At Identity Provider, select OpenID Connect.

    • At Identity Provider Name, enter Azure Entra ID or a name of your chosing.

    • At Grant type, choose Implicit.

    • At Authority URL, enter https://login.microsoftonline.com/{Directory TenantID} where {Directory TenantID} is your Azure Entra ID. In our example, pictured below, you would enter https://login.microsoftonline.com/a5b73d86-56e

    • At Client ID, copy and paste your Application (client) ID.

  7. A screenshot of a computer

AI-generated content may be incorrect.

  8. Click the Test these settings button to test your federation settings.

  9. Click Save Changes.

Assign the security policy to your verified domain

  1. In Access Identity, select Domains.

  2. In the Verified Domains section, select your Domain.

  3. Change the Security policy drop-down list to the policy you've created.

  4. Select Save changes.

Enable the domain

Enabling the domain applies the configuration you just completed to your users.

  1. In Access Identity, select Domains.

  2. In the Verified domains section, select your domain.

  3. Select Enabled.

  4. Select Save changes.

You've now completed the set up of SSO Federation. Your employees can now log in to Access Identity using your company’s sign-in credentials.

Did this answer your question?