Azure Active Directory (Azure AD) is Microsoft's multi-tenant cloud based directory and identity management service.
This section describes how to configure Azure AD as a SAML (2.0) identity provider for Cloud App Security to use.
Before you begin configuring Azure AD, make sure that:
-
You have a valid subscription with an Azure AD Premium edition license that handles the sign-in process and eventually provides the authentication credentials to the Cloud App Security management console.
Important:Cloud App Security has already stopped supporting SSO for the Azure AD Free and Basic editions because these editions do not support certificate-based communication, which can incur security risks.
If you have already configured SSO for an Azure AD Free or Basic edition, you can still use SSO to log on to Cloud App Security, but you cannot modify the existing SSO settings.
-
You are logged on to the management console as a Cloud App Security global administrator. For details, see Administrator and Role.