Set up Azure AD for Link SaaS
Link provides two kinds of user authentication - traditional Link user login and Azure AD login. This article describes the latter.
Enable Azure AD authentication
By default Azure AD authentication is disabled. To enable this go to Settings → Azure AD in the menu and select Enable Azure AD
![](../__attachments/2662465685/image-20221010-081554.png?inst-v=ea2d4b34-2b9b-4fa1-b688-c3569aa71ab0)
Configuration
First time login configuration
When Azure AD Authentication is enabled the Login page will show a “Sign in with Microsoft” button.
![](../__attachments/2662465685/image-20221010-074328.png?inst-v=ea2d4b34-2b9b-4fa1-b688-c3569aa71ab0)
Click the button and the Microsoft sign in dialog will show. Enter your email address and click Next
![](../__attachments/2662465685/image-20221010-075033.png?inst-v=ea2d4b34-2b9b-4fa1-b688-c3569aa71ab0)
You will be prompted for a password. Note that this dialog is AD specific and might look different for you.
![](../__attachments/2662465685/image-20221010-083031.png?inst-v=ea2d4b34-2b9b-4fa1-b688-c3569aa71ab0)
Make your Azure AD trust Link
If this is the first time a user from the Azure AD attempts to log in to Link, the user will be required to ask for an AD administrators approval. This is done only once. When an administrator has approved that users can log in to Link, other users will not be met by the approval process.
![](../__attachments/2662465685/image-20221010-075406.png?inst-v=ea2d4b34-2b9b-4fa1-b688-c3569aa71ab0)
![](../__attachments/2662465685/image-20221010-075555.png?inst-v=ea2d4b34-2b9b-4fa1-b688-c3569aa71ab0)
Make Link trust your Azure AD
When your Azure AD is setup to trust Link it is time to setup Link to approve logins from your Azure AD.
Until then users will be met by this message when they try to log in.
![](../__attachments/2662465685/image-20221011-083450.png?inst-v=ea2d4b34-2b9b-4fa1-b688-c3569aa71ab0)
To approve your Azure AD log in to Link with an Link user and go to Settings → Azure AD.
If one of your Azure AD users has already attempted to log in, there will be entry with your Azure AD tenant. However this tenant will need to be marked as “Approved”. Edit the row and set the Approved flag.
![](../__attachments/2662465685/image-20221010-080613.png?inst-v=ea2d4b34-2b9b-4fa1-b688-c3569aa71ab0)
Note that BIZBRAINS A/S will be listed as an approved Azure AD tenant. This is for support purposes. We recommend that this record is not deleted. However the customer can at any time approve/disapprove this tenant as needed.