How to allow Local Accounts and Entra ID accounts to login on one portal?

Swivel1660 45 Reputation points
2024-06-19T23:44:49.1666667+00:00

Hello there,

We're currently building an application that leverages Entra External ID to allow users access to our SPA application. I have created an App Registration, verified it with our MPN ID, and set it to authenticate in Multitenant mode.

I have also created a User Flow to handle Local Accounts, and attach it to the App Registration as outlined in the documentation.

I am able to authenticate successfully with both a test account from our primary Entra ID tenant, and using a Local Account, retrieve ID and access tokens, etc.

Currently the application determines which portal to send the user to based on if they click a 'Continue with Password' or 'Continue with Microsoft' button on our SPA. Ideally, I'd like the Entra External ID portal to authenticate both kinds of users - either using Home Realm Discovery policies or just a 'Sign in with Entra ID' button below the username and password prompt. Is this possbile?

Kind regards,

Dan

Microsoft Entra External ID
Microsoft Entra External ID
A modern identity solution for securing access to customer, citizen and partner-facing apps and services. It is the converged platform of Azure AD External Identities B2B and B2C. Replaces Azure Active Directory External Identities.
2,907 questions
0 comments No comments
{count} votes

Accepted answer
  1. Navya 11,790 Reputation points Microsoft Vendor
    2024-06-20T11:04:32.2166667+00:00

    Hi @Swivel1660

    Thank you for posting this in Microsoft Q&A.

    As I understand it, your question is whether it is possible to using Realm Discovery policies or just a Sign in with Entra ID button for both local accounts and Microsoft accounts in your SPA application.

    Unfortunately, as of now In External tenants the Microsoft Entra ID Sign up option is unavailable because although customers can sign up for a local account using an email from another Microsoft Entra organization, Microsoft Entra federation isn't used to authenticate them.

    Feel free to express your feedback regarding these on our feedback portal https://feedback.azure.com/d365community/forum/22920db1-ad25-ec11-b6e6-000d3a4f0789. All input shared in these forums undergoes monitoring and review by the Microsoft engineering teams responsible for developing Azure.

    For your reference: https://learn.microsoft.com/en-us/entra/external-id/customers/how-to-user-flow-sign-up-sign-in-customers

    Hope this helps. Do let us know if you any further queries.

    Thanks,

    Navya.

    If this answers your query, do click Accept Answer and Yes for was this answer helpful. And, if you have any further query do let us know.

    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.