---
title: How to Set up OpenID Connect SSO with Azure Entra ID
description: SciNote provides a user-friendly, self-service setup option for configuring Single Sign-On (SSO) on your instance.
---

[Skip to content](https://knowledgebase.scinote.net/en/knowledge/how-to-set-up-microsoft-entra-id-sso-with-azure-entra-id-0#main-content)

English

Show submenu for translations

[Leave us a message](https://knowledgebase.scinote.net/en/knowledge/kb-tickets/new?hsLang=en)

![SciNote\_logo\_color\_2023.png\]](https://knowledgebase.scinote.net/hs-fs/hubfs/SciNote_logo_color_2023.png?height=40&name=SciNote_logo_color_2023.png)

Open main navigation

Close main navigation

- English
  
  Show submenu for translations
- [Leave us a message](https://knowledgebase.scinote.net/en/knowledge/kb-tickets/new)
- Contact us

 Contact us

 How can we help you?

- There are no suggestions because the search field is empty.

1. [Customer Support](https://knowledgebase.scinote.net/en/knowledge?hsLang=en)
2. [Privacy and Data Security](https://knowledgebase.scinote.net/en/knowledge/privacy-and-data-security?hsLang=en)
3. [Account access](https://knowledgebase.scinote.net/en/knowledge/privacy-and-data-security?hsLang=en#account-access)

# How to Set up OpenID Connect SSO with Azure Entra ID

## SciNote provides a user-friendly, self-service setup option for configuring OpenID Connect SSO with Azure Entra ID.

To learn how to enable SSO inside SciNote, start with [this article](https://knowledgebase.scinote.net/en/knowledge/enable-single-sign-on-sso?hsLang=en). 

#### To set up your SSO start by registering the Application in Azure Entra

1. Log in to the [Azure Portal](https://portal.azure.com/)
2. Navigate to **Microsoft Entra ID** in the left-hand menu.
3. In the **Manage** section, go to **App registrations.**
4. Click **+ New registration** .
5. **Fill out the details:** 
     1. **Name** : Provide a name for your application, such as `SciNote App`.
     2. **Supported account types** : Choose the appropriate option based on who can sign in (e.g., organizational directory, personal accounts, etc.).
     3. **Redirect URI** : Select **Web** platform type and specify the URL to which Azure Entra will redirect users during sign-in process. (e.g., `https://<yourinstancename>.scinote.net/users/auth/customazureactivedirectory/callback`).
6. Click **Register** to complete the process.

#### **Configure Authentication:**

1. In the newly created application, go to the **Authentication** tab in the left-hand menu.
2. Enable **ID tokens** if they are not already enabled. Ensure the "Implicit grant and hybrid flows" section has "ID tokens" checked.
3. (Optional) Add Signatures redirect URL if you would like to sign tasks with SSO: 
     1. Under "Redirect URIs," click **+ Add URI** .
     2. Enter your Signatures redirect URI (e.g., `https://<yourinstancename>.scinote.net/electronic_signatures/azure_signing_callback`) and click **Save.**

#### Retrieve Application Credentials:

1. Go to the **Certificates & Secrets** tab in the left-hand menu.
2. Under "Client secrets," click **+ New client secret** .
3. Provide a description and expiry duration for the client secret, then click **Add** .
4. Copy the generated **Value** (not Secret ID!)immediately (this is your `client_secret`). You won’t be able to view it again later.
5. Note down these values: 
     1. **Application (Client) ID** : Found on the application overview page.
     2. **Application (Client) Secret** : Generated on the previous step. (e.g., `client_secret`)
     3. **Directory (Tenant) ID** : Found on the application overview page.
     4. **OpenID Connect metadata document** : Found on the application overview page, click **Endpoints** button

#### Map Custom Attributes (email, first\_name, last\_name)

 When Azure issues an ID token, it includes standard claims. To retrieve the `email`, `first_name`, and `last_name` attributes:

1. Ensure the user has these attributes populated in their Azure profile (in Azure Portal → Azure AD → Users → Select User → Edit Properties).
2. Customize the claims if necessary: 
     1. Go to the **App registrations** page and select your application.
     2. Navigate to **Token configuration** → **+ Add optional claim** .
     3. Select ID as the token type and add the following claims:
        
            1. `email`
            2. `given_name` (mapped to `first_name`).
            3. `family_name` (mapped to `last_name`).
     4. Click **Add** to save.
     5. Confirm required permissions in order to include these attributes in ID tokens.

#### **Configure SciNote Application:**

1. In SciNote navigate to Organization Settings page
2. Scroll down to **Single sign-on (SSO)** section and select **OpenID Connect**.
3. Configure the following parameters: 
     1. **Client ID** : Your Application ID from Step 3.
     2. **Client Secret** : Your client secret from Step 3.
     3. **Issuer URL :** https://login.microsoftonline.com/{TenantId}/v2.0   ({TenantId} - your Tenant ID from Step 3)
     4. **Discovery** : checked.
     5. **Enable sign in label** : enter desired label for sign in button, for example **Sign in with Entra ID**.
     6. **Enable signing tasks with SSO:** check it if you would like to sign tasks with SSO and you added Signatures redirect URL on Step 2.
4. Click **Save** button

---

If you have any questions, contact us at **[support@scinote.net](mailto:support@scinote.net).** For more information about the Premium plans, please **[request a quote.](https://www.scinote.net/get-a-quote-pricing/)**  

- [Getting Started](https://knowledgebase.scinote.net/en/knowledge/getting-started?hsLang=en#main-content)

    - [First Steps](https://knowledgebase.scinote.net/en/knowledge/getting-started?hsLang=en#first-steps)
    - [How to get most out of SciNote](https://knowledgebase.scinote.net/en/knowledge/getting-started?hsLang=en#how-to-get-most-out-of-scinote)
- [Using SciNote](https://knowledgebase.scinote.net/en/knowledge/using-scinote?hsLang=en#main-content)

    - [General](https://knowledgebase.scinote.net/en/knowledge/using-scinote?hsLang=en#general)
    - [Protocols](https://knowledgebase.scinote.net/en/knowledge/using-scinote?hsLang=en#protocols)
    - [Experiments](https://knowledgebase.scinote.net/en/knowledge/using-scinote?hsLang=en#experiments)
    - [Tasks and workflows](https://knowledgebase.scinote.net/en/knowledge/using-scinote?hsLang=en#tasks-and-workflows)
    - [Inventory](https://knowledgebase.scinote.net/en/knowledge/using-scinote?hsLang=en#inventory)
    - [App](https://knowledgebase.scinote.net/en/knowledge/using-scinote?hsLang=en#app)
- [Frequently Asked Questions](https://knowledgebase.scinote.net/en/knowledge/frequently-asked-questions?hsLang=en#main-content)

    - [Troubleshooting](https://knowledgebase.scinote.net/en/knowledge/frequently-asked-questions?hsLang=en#troubleshooting)
    - [General](https://knowledgebase.scinote.net/en/knowledge/frequently-asked-questions?hsLang=en#general)
- [Self-Guided Learning](https://knowledgebase.scinote.net/en/knowledge/self-guided-learning?hsLang=en#main-content)

    - [Courses](https://knowledgebase.scinote.net/en/knowledge/self-guided-learning?hsLang=en#courses)
    - [Video Tutorials](https://knowledgebase.scinote.net/en/knowledge/self-guided-learning?hsLang=en#video-tutorials)
    - [In-app Guides](https://knowledgebase.scinote.net/en/knowledge/self-guided-learning?hsLang=en#in-app-guides)
- [Account Settings and Management](https://knowledgebase.scinote.net/en/knowledge/account-settings-and-management?hsLang=en#main-content)

    - [Account settings and preferences](https://knowledgebase.scinote.net/en/knowledge/account-settings-and-management?hsLang=en#account-settings-and-preferences)
    - [Organization and Workspace settings](https://knowledgebase.scinote.net/en/knowledge/account-settings-and-management?hsLang=en#organization-and-workspace-settings)
    - [Users and permissions](https://knowledgebase.scinote.net/en/knowledge/account-settings-and-management?hsLang=en#users-and-permissions)
    - [Referrals](https://knowledgebase.scinote.net/en/knowledge/account-settings-and-management?hsLang=en#referrals)
- [Installations and Integrations](https://knowledgebase.scinote.net/en/knowledge/installations-and-integrations?hsLang=en#main-content)

    - [Hosting and local installation](https://knowledgebase.scinote.net/en/knowledge/installations-and-integrations?hsLang=en#hosting-and-local-installation)
    - [Integrations](https://knowledgebase.scinote.net/en/knowledge/installations-and-integrations?hsLang=en#integrations)
    - [Technical specifications and programming](https://knowledgebase.scinote.net/en/knowledge/installations-and-integrations?hsLang=en#technical-specifications-and-programming)
- [Privacy and Data Security](https://knowledgebase.scinote.net/en/knowledge/privacy-and-data-security?hsLang=en#main-content)

    - [Account access](https://knowledgebase.scinote.net/en/knowledge/privacy-and-data-security?hsLang=en#account-access)
    - [Activity log and data traceability](https://knowledgebase.scinote.net/en/knowledge/privacy-and-data-security?hsLang=en#activity-log-and-data-traceability)
    - [Data security](https://knowledgebase.scinote.net/en/knowledge/privacy-and-data-security?hsLang=en#data-security)
- [Billing and Pricing](https://knowledgebase.scinote.net/en/knowledge/billing-and-pricing?hsLang=en#main-content)

    - [Subscription and billing](https://knowledgebase.scinote.net/en/knowledge/billing-and-pricing?hsLang=en#subscription-and-billing)

- [Default HubSpot Blog](https://scinote-3850750.hs-sites.com/blog)

[![Chill listening crop-3](https://knowledgebase.scinote.net/hs-fs/hubfs/SciNote-Logo-2018-1024x203-1.png?width=151&height=30&name=SciNote-Logo-2018-1024x203-1.png "Chill listening crop-3")](https://www.scinote.net/)

Customer Support

Copyright © 2026, SCINOTE LLC