This article shows you as an organization administrator how to connect SourceMagnet to Microsoft Entra ID.
What you get
With Entra ID people sign in with their work account instead of a separate password. If you also turn on forced sign-in, people lose access here when their work account is deactivated.
Connect
Go to Access management and select the Entra ID tab.
Select Connect an Entra tenant and follow the steps.
You need permissions in your own Entra ID to complete the connection. If you do not have them, your IT department has to do this step.
Require Entra ID sign-in
Once the connection is in place, you can switch on Force Entra ID authentication. Then nobody can sign in with a password any more, only with the work account.
⚠️ Warning: If you turn on forced sign-in before everyone is connected to Entra ID, they lose access. Check that everyone in the user list exists in the Entra tenant first.
Automatic user provisioning with SCIM
SourceMagnet supports SCIM, the standard Entra ID uses to create, update and deactivate users automatically. With SCIM you do not have to add people by hand: assign SourceMagnet to a person or a group in Entra ID, and the user is created here.
The setup happens in Entra ID, under provisioning for the SourceMagnet application. You fetch the key yourself: on the Entra ID tab you find Provisioning key with a Get Secret button, and paste it into Entra.
ℹ️ Note: Under Sign-in there is also a setting that allows only users provisioned through SCIM. It turns off automatic creation of users at sign-in for the connected tenant. If you have several tenants connected, check with support that it covers all of them. It does not stop password sign-in — that is what Force Entra ID authentication does.
Next
See Users and roles: who can do what for how access is managed afterwards.
