This article provides a detailed guide on the steps required to set up SmartTrace Azure Single Sign-On (SSO).
Prerequisites:
- You must have administrative access to Microsoft Office 365, specifically you will need permissions to add an Enterprise Application to Microsoft Entra Admin Center (Formerly known as Azure Active Directory)
- A custom SmartTrace URL (i.e. https://myfacility.smarttrace.ai) (Contact SmartTrace customer service to set this up)
Steps to Configure:
- Navigate to Microsoft Entra Admin Center https://entra.microsoft.com/ (Formerly known as Azure Active Directory)
- Click Enterprise Apps > All Applications > New Application

- Search for the SmartTrace App in the search bar, and select it, and click Create

- Click Enterprise Applications > Search for SmartTrace > Click on the SmartTrace app - this is the app you just created in step 2.

- Click "Users and groups" > "Add user/group"
- You can add users on the basic subscription for Office 365, to add groups you must upgrade your Active Directory plan level.
- Add the users / groups whom you wish to be able to log into SmartTrace using their Microsoft Office 365 account

- Navigate back to the SmartTrace SSO App regisration

- On the Authentication tab, select Access Tokens and ID tokens. For the Front-channel logout URL, enter "https://api.staging.smarttrace.ai/v1/auth/callback/azure-logout/ehtgroup", then click Save at the bottom

-
On the Certificates & secrets tab, add a new client secret:
-
Name can be "OAuthSecret"
- Choose an expiry date (remember to reissue the secret before it expires!)
- Add the new secret
- Copy the secret value and store it somewhere secure - you only get to see it once
- Copy the secret ID

-
- Next, you'll need to configure the integration on the SmartTrace side. Log into SmartTrace as a facility administrator, and navigate to the integrations page:

- Click the "Add Integration" button, and select "Azure". Click the pencil icon on the newly created Azure Active Directory integration

- Enter the client secret (which you took note of in step 7) and the application id and tenant id, which can be found here:

That's it! Now access SmartTrace using your facility's URL, and you will see the sign-in with Microsoft button.
Congratulations you know now how to Set up SmartTrace Azure SSO! Checkout our other knowledgebase article for more recourses and guides.