Microsoft Entra ID
Microsoft Entra ID administrator
The EPLAN IdentityService can connect to Microsoft Entra ID in two ways.
- The first user logs into the EPLAN Cloud with their Microsoft account. It is irrelevant here whether the user first created an EPLAN account and then connects the Microsoft account with the EPLAN Cloud or signs in directly to the EPLAN Cloud with the Microsoft account.
- The Microsoft Entra ID administrator logs into the EPLAN Cloud with their Microsoft account. It is irrelevant here whether the administrator first created an EPLAN account for themselves and then connects the Microsoft account with the EPLAN Cloud or signs in directly to the EPLAN Cloud with the Microsoft account.
Security settings
As soon as the first user has logged into the EPLAN Cloud with their Microsoft account, the EPLAN IdentityService appears in Microsoft Entra ID. Now you can specify in the security settings of Microsoft Entra ID whether you want to confirm each sign-in request by a user individually or whether a sign-in is possible for all users as a default.
If you yourself sign in with your Microsoft account to the EPLAN Cloud, the Microsoft sign-in dialog is displayed and gives you the possibility to specify the settings for the users already during the sign-in. You can later change the security settings for the sign-in at any time in Microsoft Entra ID.
EPLAN Cloud Settings in Microsoft Entra ID
Access to company data
To process a user sign-in with the Microsoft account, EPLAN Cloud requires information about the company data.
In Microsoft Entra ID, you can specify whether each user may provide access to company data or whether only the administrator has this right. If only the administrator has this right, the user cannot sign in to the EPLAN Cloud with their Microsoft account and receives a corresponding message during the sign-in.
Optionally you can specify that the user requests the approval of the administrator. The administrator then receives a request in Microsoft Entra ID which they can confirm or reject.
Deactivate sign-in for the EPLAN Cloud
If you deactivate the sign-in for the EPLAN Cloud in Microsoft Entra ID, users cannot sign in to the EPLAN Cloud anymore with your Microsoft account and they receive an error message when they sign in.
Users who are logged into the EPLAN Cloud only with their Microsoft account will then no longer have access to the EPLAN Cloud. Users who have an additional EPLAN account can still sign in to the EPLAN Cloud with their credentials.
Assigning of users is activated
You need to add users to the EPLAN Cloud application manually. Users who are not assigned end up in a sign-in loop when using your Microsoft account to sign in to the EPLAN Cloud.
Example
In Microsoft Entra ID, you add 10 users for the EPLAN Cloud and invite them to your organization via the EPLAN Cloud user management.
If two additional users are now allowed to use the EPLAN Cloud, you must also first add both users manually in Microsoft Entra ID for the EPLAN Cloud and then invite them to your organization via the EPLAN Cloud user management.
If you invite the users only via the EPLAN Cloud user management, the users cannot sign in to the EPLAN Cloud! This is only possible when you have added the users in Microsoft Entra ID.