Allows admins to control which users are synchronised from the Entra Directory to My1Login and provides seamless Single Sign-On (SSO) to the My1Login web application using Entra identities.
Additionally, this functions as a credential decoder, allowing shared credentials to be decrypted by end users without requiring an admin session at the time of login.



(AU=<Administrative Unit Name>)(Group=<Group Name>) (AU=ACME CI Company,Group=Test Users) will find only users in group Test Users within administrative unit ACME CI company (AU=Fake Company) will find all users and groups within administrative unit Fake Company.Click “Add OIDC IP Config”
Name the button (i.e. Log in with Entra) - this is what will appear on the login page for your My1Login whitelabel
Replace the <TENANT ID FROM ENTRA> values with the Tenant ID on Entra. Where to find these values can be done here: https://support.my1login.com/portal/en/kb/articles/finding-eds-configuration-values-in-azure
Identity Provider Login URL is https://login.microsoftonline.com/<TENANT ID FROM ENTRA>/oauth2/v2.0/authorize
Issuer is https://login.microsoftonline.com/<TENANT ID FROM ENTRA>/v2.0
Tick “Show on Login Page”
Install the EDS.
Open the EDS. Navigate to the Server Settings tab and Log In as an Admin user. The API Key, Account Identifier, Security Token and Directory (Tenant) ID fields should autofill once logged in. The filter should also autofill.
Fill in the Application (Client) ID and Client Secret fields with the values retrieved from Azure earlier. Click Update from Server, Validate and Save
Synchronise All Entra Users Now and monitor the progress from the Tail Log tab