Single sign-on

Single sign-on

Instructions for First-Time Access to the Advania UK Marketplace using Single sign-on

If this is your first time accessing the Advania Marketplace, please review the setup instructions below. This is a one-time setup.

Single Sign-On (SSO) Option: Advania UK Managed Application

The default configured option for SSO within the Advania UK Marketplace is the Advania UK Managed Application. This application allows us to support signing in with your own Entra ID (also known as Azure AD or Microsoft Tenant) seamlessly.

Key Features of Advania UK Managed Application:

  • Simple and Fast Setup: Typically requires consent by a global administrator within your IT department.

  • No Additional Credentials Needed: Use your existing Entra ID identity without needing an additional username or password.

  • Minimal Configuration: No complex configuration required by your internal IT teams.

Requirements:

  • Account with Global Administrator Access: You need an account with global administrator access to Entra ID (Azure AD/Microsoft Tenant).

  • Application Permissions: We require permissions to sign in and read your profile. This minimal access is only to verify your identity, as we already have your user information.

Step-by-Step Setup Guide:

  1. Ensure you are signed into a web browser with your company’s email address.

  2. Browse to the Advania UK Marketplace: https://marketplace.advania.co.uk (GBP/EU instance, this is the default instance) or browse to https://marketplace-us.advania.co.uk for the US version. If you have any questions, please reach out for confirmation.

  3. Select “Sign in with Microsoft.”

    1. Do not select Single Sign-On (SSO)

      image-20241223-090602.png
  4. This should either take straight to the consent screen or you may need to sign in with your organisations information.

Possible Screens During Login:

  1. If you have the required access, you will see a consent page.

    image-20241223-130039.png
    • You will see "Consent on behalf of your organization" and an accept button if you have global admin rights.

    • We recommend selecting "Consent on behalf of your organization" for streamlined access control.

  2. If you do not have the required access, you will be directed to request approval from your IT team.

    image-20250120-101941.png
    • Reach out to your IT team for assistance if needed.

  3. Your organization may allow individual approval settings, enabling you to proceed without additional permissions.

    image-20250106-124144.png
  4. After consenting, you should see the home page of the Advania Marketplace and can now log in using "Sign in with Microsoft."

Enterprise Application Management:

Once consented and approved by a global administrator:

  • The application will appear in your Microsoft Tenant Enterprise Applications under "Advania UK Marketplace."

    image-20241223-090322.png

    Recommended Settings:

    • Assignment Required? Set this to “Yes.”

    • Visible to Users? Set this to “Yes.”

For organizations with multiple tenants:

  • Only primary tenants can use SSO; additional tenants will use username and password login with MFA (Multi-Factor Authentication). Improvements are planned for future support across additional tenants.

To further secure access:

  • Create a security group in Entra ID and assign it under “Users and groups” within Enterprise Applications.

  • Ensure users are created within Advania UK Marketplace before they attempt login, as adding new users does not automatically provision them in the marketplace.