You can integrate Microsoft Azure Active Directory with Openpath to import and sync users automatically.
Note: To enable this integration, you must have the Application Administrator role.
To set up the integration:
Go to https://control.openpath.com/login and log in. To access the European Control Center, please go to https://control.eu.openpath.com/login.
Under App Marketplace > Get Apps, click on the Essential User Management or Premiere User Management tile, then click Get App.
Under App Marketplace > My Apps, click on the User Management app, then click Microsoft Azure AD.
4. Microsoft will prompt you to sign in. Sign in with your Azure AD account credentials and allow Avigilon Alta to access your users and groups.
Note: Avigilon Alta can only read data from your Azure account; it cannot write data or make any changes within Azure. The token Avigilon Alta uses only has read permissions for users, groups, and directory data in Azure.
5. After signing in, you’ll be directed back to Openpath where you can enable the following settings:
A. Auto-sync every 1 hour/15 minutes – this will sync Openpath with Azure AD once every hour or once every 15 minutes. depending on which user management package you're using (see Administration > Account for package details).
B. Auto-create mobile credential – this will create a mobile credential for every user.
C. Auto-create cloud key credential – this will create a cloud key credential for every user.
D. Enable Single Sign-On (SSO) for users with portal access – this will let users log into the Control Center with their Azure credentials.
E. Only import users from groups that have an Openpath group mapping — if this is enabled, no users will be imported from Azure if they are not assigned to an Openpath group.
F. Auto-remove users from groups — this will remove users from Openpath groups if they no longer exist in Azure groups.
6. To map a specific group from Azure to Openpath (required if you enabled Only import users from groups that have an Openpath group mapping), click +Create Group Mapping.
A. Select the group from Azure.
B. Select the group from Openpath.
C. Click +Create Group Mapping
7. Repeat step 6 until all groups that need to be mapped have been created.
After saving, you now have the option to Manually Sync. You can perform this action at any time by clicking the Synchronize button on the Azure AD settings page.
Additional resources
Add Comment