Configuring Azure Active Directory
You can configure your Microsoft Azure Active Directory (Azure AD) as a directory in Crowd. All changes to your users, groups, and memberships will be synced between Azure AD and Crowd periodically, or whenever you request it. You'll be able to view information about your users directly in Crowd by using the User Browser and Group Browser.
Before you begin
Before you configure your Azure AD, you should know about the following restrictions:
- In Azure AD, you can have multiple groups with the same name (displayName), but it's not supported in Crowd and results in a failing synchronization. Make sure you change your Azure AD group names to unique ones.
- Crowd doesn't support multi-factor authentication. You'll need to disable it for your users in Azure AD, or they will not be able to log in to Crowd or any integrated applications.
- If you need to make any changes to your users, make them directly in Azure AD. You can't edit your Azure AD users in Crowd.
Configuring Azure Active Directory
To configure Azure AD, you’ll need to create two applications in your Azure Portal, and then use them to add Azure AD to Crowd.
1. In Azure web application.
2. In Azure native application
3. Steps in Crowd
You've added your Azure AD to Crowd. You should now see a brief summary of your directory, and details about the synchronization.
In some cases, the synchronization might be failing at first because the new permission wasn't yet propagated in Azure AD. Just wait a few minutes, the problem will fix itself.
Crowd will automatically pull data from Azure AD. If that doesn't happen, you can click Synchronise now. Once the synchronization is complete, you can check your users and groups from Azure AD by going to Users/Groups in the top navigation bar.
Field mapping
The following tables show how fields in Azure AD are mapped to those in Crowd. We're comparing Azure AD's API fields with Crowd's UI fields.
Users
Azure AD | Crowd |
---|---|
userPrincipalName | Username |
displayName | Display name |
givenName | First name |
familyName | Last name |
accountEnabled | Active |
id | External ID |
E-mail address |
Groups
Azure AD field | Crowd field |
---|---|
displayName | Name |
description | Description |
id | External ID |