How to setup SSO with third-party apps like e-Commerce platforms and others which are used by internal and external users across the organization and without the SSO or any other details from that app/service provider? Is it possible or not for us?

Mytoast Admin 285 Reputation points
2024-12-13T09:07:21.27+00:00

How to setup SSO with third-party apps like e-Commerce platforms and others which are used by internal and external users across the organization and without the SSO or any other details from that app/service provider?

Is it possible or not for us?

What are the different ways for us to do it and can we setup it with SAML and OIDC or not?

For example:

I have a application used for transport from third-party and we want to setup SSO on it for our internal and external users and that third party is not going to provide any details then is it possible to setup SSO or not?

Microsoft 365 and Office Install, redeem, activate For business Windows
Microsoft Security Microsoft Entra Microsoft Entra ID
{count} votes

2 answers

Sort by: Most helpful
  1. Marti Peig 970 Reputation points Microsoft Employee
    2024-12-13T11:03:39.23+00:00

    Hi Mytoast,

    In order to integrate an external app via SAML or OIDC, you need the details from the vendor. These details allow you to understand what values, and parameters you will need to send during the token request and authentication processes.

    Typically, vendors provide step-by-step instructions on how to integrate their apps with these protocols, because not all identity providers are supported (each has it own particularities), and so details must be provided by the vendor.

    I hope it helps.


  2. Harshitha Eligeti 4,380 Reputation points Microsoft External Staff Moderator
    2024-12-16T20:28:21.4566667+00:00

    Hello @Mytoast Admin 

    Thank you for reaching out Microsoft Q&A.  

    I understand that you're trying to set up SSO with third-party apps, such as e-commerce platforms, that are used by both internal and external users across the organization, and you're asking if it's possible to configure SSO using SAML and OIDC without receiving SSO or other details from the app/service provider. 

    I hope Answer provided by @Marti Peig is helpful. 

    Additionally, you can add any application that already exists in your organization, or any third-party application from a vendor who isn't already part of the Microsoft Entra gallery. Depending on your license agreement, the following capabilities are available: 

    Self-service integration of any application that supports Security Assertion Markup Language (SAML) 2.0 identity providers (SP-initiated or IdP-initiated) 

    Self-service integration of any web application that has an HTML-based sign-in page using password-based SSO 

    Self-service connection of applications that use the System for Cross-Domain Identity Management (SCIM) protocol for user provisioning 

    Ability to add links to any application in the Office 365 app launcher or My Apps 

    Each of your applications might have different authentication requirements. With Microsoft Entra ID, signing certificates can be used with applications that use SAML 2.0, WS-Federation, or OpenID Connect Protocols and Password Single Sign On. For more information about application authentication types, see Managing certificates for federated single sign-on in Microsoft Entra ID and Password based single sign on

    for additional information you can follow: https://learn.microsoft.com/en-us/entra/identity/enterprise-apps/plan-an-application-integration#capabilities-for-apps-not-listed-in-the-microsoft-entra-gallery 

    Hope this helps. Do let us know if you have any further queries. 

    ------------ 

    If this answers your query, do click Accept Answer and Yes for was this answer helpful. And, if you have any further queries do let us know. 

    Regards, 
    Harshitha Eligeti. 


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.