주 컨텐츠로 이동
Adaptive Planning
Steps: Configure SAML SSO Using Microsoft Entra ID

Steps: Configure SAML SSO Using Microsoft Entra ID

Configure Microsoft (MS) Entra ID to enable SAML-based SSO between your identity provider and Adaptive Planning. See Concept: SAML SSO. Since the configuration includes steps that you must complete on both applications, keep them open side-by-side on two browser tabs.
Microsoft (MS) Entra ID was previously known as Azure Active Directory (AD).

Set Up MS Entra ID

  1. From the MS Azure portal, select
    Microsoft Entra ID
    .
  2. Select
    Enterprise applications
      and then
    New application
    .
  3. In the search box, enter
    Adaptive
    . From the search results, select
    Adaptive Insights
    . The Adaptive insights Enterprise Application overview page displays.

Configure Microsoft Entra ID Single Sign-On

  1. Sign in to Adaptive Planning and select
    Administration
    from the main menu.
  2. Under
    Users and Permissions
    , click
    SAML SSO Settings
    .
  3. Scroll down to the
    SSO URL
    section at the bottom of the page and copy the
    Adaptive Planning SSO URL
    . Save this URL for use at a later step.
  4. In Microsoft Entra ID, from the Adaptive Insights Enterprise Application overview page, click
    Single sign-on
    .
  5. Select
    SAML
    as the single sign-on method. Then, next to Basic SAML Configuration, click
    Edit
    .
  6. Under
    Identifier (Entity ID)
    , click the
    Add identifier
    link and paste the Adaptive Planning SSO URL that you copied from Adaptive Planning in an earlier step.
  7. Under
    Reply URL (Assertion Consumer Service URL)
    , click the
    Add reply URL
    link and again paste the Adaptive Planning SSO URL. Then click
    Save
    .
  8. From the
    SAML Certificates
    section, click
    Certificate (Base64)
    to download and save the certificate to your computer.
  9. From the
    Set up Adaptive Insights
    section, copy these values for use at a later step:
    • Login URL
    • Microsoft Entra Identifier
  10. In Adaptive Planning, on the SAML SSO Settings page, complete these fields:
    1. In
      Identity provider name
      , enter a name for your configuration.
    2. In
      Identity provider Entity ID
      , paste the Microsoft Entra Identifier that you copied from MS Entra ID in an earlier step.
    3. In
      Identity provider SSO URL
      , paste the Login URL that you copied from MS Entra ID in an earlier step.
    4. Next to
      Identity provider certificate
      , click
      Choose File
      and upload the SAML certificate that you downloaded from MS Entra ID in an earlier step.
    5. Next to
      SAML user Id
      , select
      User's Adaptive Planning user name
      .
    6. Next to
      SAML user id location
      , select
      User id in NameID of Subject
      . For
      SAML NameID format
      , select
      Email address
      .
    7. In the
      Enable SAML
      section, select
      Allow SAML SSO and direct Adaptive Planning login
      .
    8. Click
      Save
      .

Create MS Entra ID Test User

  1. In MS Entra ID, on the left navigation pane, click
    Users
    .
  2. On the Users page, click
    All users
    . Then select
    New user
    Create new user
    .
  3. Enter the user principal name and email address. Copy the email address for use in a later step.
  4. Enter the display name for the test user.
  5. Next to
    Password
    , click
    Copy to clipboard
    for use in a later step.
  6. Click
    Review + Create
    .

Create Adaptive Planning Test User

  1. Sign in to Adaptive Planning as an administrator.
  2. Navigate to
    Administration
    .
  3. Click
    Users.
  4. Click
    New User.
    1. Enter the name, login, email, and password of a valid MS Entra ID user you want to provision.
    2. Select a permission set.
    3. Click
      Submit.

Assign the MS Entra ID Test User

These steps let the MS Entra ID test user that you created access Adaptive Planning using single sign-on.
  1. In MS Entra ID, on the left navigation pane, click
    Enterprise applications
    .
  2. In the all applications list, select the Adaptive Insights application that you created.
  3. On the left navigation pane, click
    Users and groups
    and then
    Add user/group
    at the top of the page.
  4. Under
    Users
    , click
    None Selected
    . Then from the users list, select the test user.
  5. Click
    Assign
    on Add Assignment.

Test the SSO (Service Provider Initiated)

Sign in to Adaptive Planning with your username and without a password. You're redirected to the Microsoft SSO sign-in page:
SAML SSO Azure AD Credentials
Enter your credentials and complete the SSO sign in. You’re logged in to Adaptive Planning.

Test the SSO (Identity Provider Initiated)

  1. In MS Entra ID, on the left navigation pane, click
    Properties
    .
  2. Copy the
    User access URL
    .
  3. Open a new browser page, paste the User access URL into the URL bar, and press
    Enter
    .

SSO Into Excel Interface for Planning and OfficeConnect

After you've successfully configured and tested SAML SSO with MS Entra ID, users can sign in to OfficeConnect and Excel Interface for Planning with their Adaptive Planning username and leave the Password field blank. On the Microsoft login page, they must enter their MS username and password.