Overview
This article explains setting up single sign-on (SSO) for your school website. Enabling single sign-on allows users to log into your Juniper Website with their Microsoft credentials. The configuration involves two steps, each explained below. The first step involves some configuration activities in Microsoft Azure Active Directory (AD). The second step involves configuration in Juniper Websites.
Prerequisites
- You must be an administrator in Juniper Websites.
- You must have the appropriate conditions to configure Google Workspace.
Instructions
-
- Log in to your Microsoft Azure account.
- Select Azure Active Directory.
- Select App registrations.
- Select New registration to create the app instance:
- Enter a Name.
- Select the Supported account types.
- Add a Redirect URI. This should be your website address followed by /admin/login/sso/oauth/return.asp. For example, to set up SSO for the URL https://www.junipereducation.org enter https://www.junipereducation.org/admin/login/sso/oauth/return.asp
- In the App Registration, select Authentication.
- Under Advanced settings enter a logout URL. This should be your website address followed by /ssosp/logout. For example, to set up SSO for the URL https://www.junipereducation.org enter https://www.junipereducation.org/ssosp/logout.
- Select Save.
- To allow the Juniper Websites CMS access to Azure AD, you will need three pieces of information from Azure: Application (client) ID, Directory (tenant) ID and Client Secret. Two of these are found in the Overview section:
The third is found under Certificates and Secrets. To create a new secret for use on the website, select New client secret: - After noting your details log into Juniper Websites CMS as an administrator.
- Select Settings from the Website tab.
- Select Website Settings.
- Scroll down and select Single Sign-on:
- Select Azure AD for What single sign on provider should the website use?.
- Enter the Client ID, Tenant ID and Client Secret from Azure.
- Optionally, add your Domain for logging in.
- When prompted select Authorise access to Azure AD and follow the authorisation process.
- After authorisation use Add/Remove Links to align your Azure Active Directory groups to the Security Roles within your Juniper Websites CMS.
- You can Enable Single Sign-On, choosing how you will allow users to log in to the website.
- Select Save to complete the set-up.
Outcome
Single sign-on is enabled. Your users will be able to use their Google credentials to get access to Juniper Websites CMS.
Related information
- To set up Google Workspace Single Sign-on see Juniper Websites: How do I set up single sign-on (SSO) for my website (Google Workspace)?
- Juniper Websites: Single sign-on setup.
Updated