Step 2a - Setting up Federated using Entra, Google Identity or similar

Jon Gilbert Updated by Jon Gilbert

Single Sign on using Entra, Google Identity or similar (federated). 

Please refer to our Identity help section “federated authentication” for more information. This section will give you advice on setting up an Enterprise Application in your Microsoft Entra environment.  

Please ensure that you follow all the steps in the Entra configuration guidance to ensure the authentication process is successful. This includes the final Mapper section - without this step you may inadvertently lock all users out of the system.

Configuration is similar for Google Identity. 

Note that an X509 certificate is mandated for Federated login. If you need guidance on that process, please refer to the associated help docs here.

If all your users use a federated login:

It is important to set the Federated only flag at organisation level to true. Please see here for further details.
It is recommended that the "Always use" is set to true in the Single sign-on provider details. The standard login screen (username and password) will then be bypassed.
When configuring Identity for Federated login, ensure that the configuration is set to automatic pairing - do not create user and not automatic pairing.

Was this article useful?

Step 2 - Configuring your OneAdvanced Identity Organisation (Federated)

Step 3 - Identity onboarding in Time and Attendance (Federated)

Contact