---
title: Azure SSO Configuration User Guide
description: Learn how to configure Azure SSO with external IdP using OIDC for AWS Cognito.
image: https://stratusgrid.com/hubfs/Azure%20SSO%20configuration%20User%20Guide.webp
---

# Azure SSO Configuration User Guide

Learn how to configure Azure SSO with external IdP using OIDC for AWS Cognito.

[ Trevor Sullivan ](https://stratusgrid.com/knowledge-base/author/trevor-sullivan)

 Aug 22, 2024

#### Table of Contents

### Need additional support?

### Subscribe

![StratusGrid logo above the text 'Azure SSO Configuration User Guide' on a dark background](https://stratusgrid.com/hubfs/Azure%20SSO%20configuration%20User%20Guide.webp)

Azure SSO Configuration User Guide

3:22

## External IdP Configuration Guide Overview (OIDC)

In order to configure an external OIDC provider for an AWS Cognito user-pool, there must be an exchange of information between both the app ([Stratusphere](https://stratusphere.app)) and the customer organization's system administrator.

The system administrator must configure their SSO Provider with a new Application representing Stratusphere (and the above values). They must then provide the following (from the SSO Provider's newly registered application) to Stratusphere:

- Domain/Issuer URL
- Client ID
- Client Secret

Note: [SAML-required fields](https://docs.aws.amazon.com/cognito/latest/developerguide/cognito-user-pools-saml-idp.html) are different from those required to configure OIDC IdPs. This guide is specific to OIDC configurations.

## Customer System Administrator - Azure Entra ID Configuration (OIDC)

Please follow these steps to create an App Registration in Entra ID for [Stratusphere](https://stratusphere.app):

1. In the [Azure Portal](https://portal.azure.com), go to Microsoft Entra ID service  
2. In the side menu, choose App Registrations  
3. Click New Registration

- Name the new application (e.g. "Stratusphere App")
- Supported account types: **Accounts in this organizational directory only**
- Add the Redirect URI 
    - **Platform**: Web
    - URL: [https://scip-auth-prd.auth.us-east-1.amazoncognito.com/oauth2/idpresponse](https://scip-auth-prd.auth.us-east-1.amazoncognito.com/oauth2/idpresponse)

4. Click the Register button

5. Navigate to the new Application registration you created

6. In the Overview tab of the registration, note these fields:

- Application ID (aka. Client ID)
- Entra Directory (Tenant) ID

7. In the Branding & Properties tab, note these fields

- Add the Homepage URL: [https://stratusphere.app/auth](https://stratusphere.app/auth)

8. To create a new client secret:

- On the side menu, choose **Certificates & Secrets**
- Click **New Client Secret**
- **Description**: provide any description (e.g. "Stratusphere App - Client Secret")
- **Expires**: **2 years**
- Click the **Add** button
- In the table of **Client Secrets**, click the **Copy to Clipboard** button beside the **Value** of the new secret 
    - **Note**: You only get one chance to copy the value; refreshing the page will mask the majority of the secret's value

## Finalize Configuration and Test

Once the Application registration has been created and the secret has been configured in the Azure portal, please reach out to support at support@stratusphere.app. We will set up a 15min call to finish configuration and test the integration.

Please be prepared to provide the following values to the Stratusphere team during the call (none of these values will be stored outside of the secure storage in the production SSO service):

- Application (client) ID
- Directory (tenant) ID
- The Client secret's value

## Similar posts

<https://stratusgrid.com/knowledge-base/google-cloud-sso-configuration-user-guide>

### [Google Cloud SSO Configuration User Guide](https://stratusgrid.com/knowledge-base/google-cloud-sso-configuration-user-guide)

Learn how to configure Google Cloud OIDC SSO for Stratusphere Console login.

 Trevor Sullivan  Aug 22, 2024

<https://stratusgrid.com/knowledge-base/okta-sso-configuration-user-guide>

### [Okta SSO Configuration User Guide](https://stratusgrid.com/knowledge-base/okta-sso-configuration-user-guide)

Learn how to configure Okta SSO with external IdP using OIDC for AWS Cognito.

 Trevor Sullivan  Aug 22, 2024

<https://stratusgrid.com/knowledge-base/how-to-backfill-cur-data>

### [How to Backfill CUR From AWS to Stratusphere™ FinOps](https://stratusgrid.com/knowledge-base/how-to-backfill-cur-data)

Discover how to efficiently backfill Cost and Usage Reports (CUR) from AWS into StratusGrid's cost optimization dashboard Stratusphere™ FinOps in our...

 Stratusphere's AWStronaut  Feb 13, 2024

```json
{
  "@context" : "https://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "Trevor Sullivan",
    "url" : "https://stratusgrid.com/knowledge-base/author/trevor-sullivan"
  },
  "dateModified" : "2025-08-05T16:35:57.485Z",
  "datePublished" : "2024-08-22T18:23:21.000Z",
  "headline" : "Azure SSO Configuration User Guide",
  "image" : [ "https://stratusgrid.com/hubfs/Azure%20SSO%20configuration%20User%20Guide.webp" ],
  "mainEntityOfPage" : {
    "@id" : "https://stratusgrid.com/knowledge-base/azure-sso-configuration-user-guide",
    "@type" : "WebPage"
  },
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject",
      "url" : "https://stratusgrid.com/hubfs/Vertical%20Black.png"
    },
    "name" : "StratusGrid"
  }
}
```

```json
{
  "@context" : "https://schema.org/",
  "@type" : "Product",
  "aggregateRating" : {
    "@type" : "AggregateRating",
    "bestRating" : "5",
    "ratingCount" : "1",
    "ratingValue" : "5",
    "reviewCount" : "1",
    "worstRating" : "0"
  },
  "brand" : {
    "@type" : "Brand",
    "name" : "StratusGrid"
  },
  "description" : "StratusGrid, a premier AWS Consulting Partner, specializes in AWS cloud migration, modernization, stabilization, and cloud cost optimization services.",
  "image" : "https://stratusgrid.com/",
  "name" : "StratusGrid",
  "review" : {
    "@type" : "Review",
    "author" : {
      "@type" : "Person",
      "name" : "G2"
    },
    "datePublished" : "2024-01-21",
    "name" : "G2 User",
    "publisher" : {
      "@type" : "Organization",
      "name" : "G2"
    },
    "reviewBody" : "Great Customer Service and Extremely Knowledgable Team",
    "reviewRating" : {
      "@type" : "Rating",
      "bestRating" : "5",
      "ratingValue" : "5",
      "worstRating" : "0"
    }
  }
}
```