Skip to main content

 

Eptura Knowledge Center

SSO and the Condeco Device Hub

SSO and Condeco 


Process for enabling SSO for the Condeco Device Hub

The Device Hub supports authentication via SSO (Single Sign-on) or by forms login (entering a username and password). If SSO is enabled, forms login is no longer possible.

Support for other IdPs is planned.

Prerequisites


The following is required before enabling SSO for the Device Hub:

  • An Azure AD subscription
  • SSO configured in your identity provider (IdP) service.
  • Azure AD client ID (see below).
  • Azure AD tenant ID (see below).
  • The email address of your Azure admin who can complete the SSO registration.

Multi-factor authenticationMulti-factor authentication is not supported for domains using SSO.

Process for enabling SSO for the Device Hub


Condeco will configure SSO for your tenant when the following process is complete:

  1. Send Condeco the following details by your agreed method:
    1. Azure AD client ID.
    2. Azure AD tenant ID.
    3. The email address of your Azure admin (who will complete the SSO registration).
  2. Condeco then adds the provided details to the Device Hub.
  3. If the Azure admin's email address is not already registered, an activation email with a PIN is sent to the email address.
    1. The Azure admin follows the instructions in the activation email to complete the registration.
  4. Finally, Condeco configures SSO for your tenant.

Your Azure admin is now registered and can add additional administrators as required via the Device Hub. Each newly added admin receives a welcome email and can sign in to the Device Hub using SSO.

Signing in using SSO


To sign in to the Device Hub using SSO click Sign in. You are then directed to your own IdP service to authenticate by your usual methods. When authenticated, the Device Hub is launched.

Signing out behavior
  • You are automatically signed out after 60 minutes of inactivity.
  • If you have multiple Device Hub sessions open on different tabs, logging out will sign out of all tabs in the same browser. Another session in a different browser remains logged in.
  • Logging out of the Device Hub will also log out your IdP service.

How to find your Azure client ID and tenant ID