Help Center

Map Groups and Roles from Microsoft Entra ID (Azure) to Canto

  • Updated

    ~ minute read

You can map groups and roles of Users from Microsoft Entra ID to Canto by using the Group ID.

Please note:

You are required to have Single Sign On (SSO) activated for your account in order to map groups and roles from Microsoft Entra ID to Canto.

Only administrators and users with the privilege to Manage Users & Groups can access this function.

 

How to find Group IDs in Microsoft Entra

In Canto this ID is referred to as Microsoft Entra ID Group ID and in Entra it is named Object Id.

  1. Open your Microsoft Entra ID environment and sign in.
  2. Search for and select Microsoft Entra ID Active Directory.
  3. Open the Active Directory and you will find your Groups section.
    Here you can manage your existing Groups and add new ones.
  4. Under Object Id you will find your Entra Group ID that you can copy over to Canto.

 

How to map your Entra ID Groups to Canto

If SSO is activated for your account and you are either logged in as an administrator or have the privilege to Manage Users & Groups you can add groups using Entra Group IDs.

  1. In Canto navigate to Settings > Users & Groups > Groups.
  2. Paste the Object Id which you retrieved from your Entra Active Directory into the field Entra Group ID.
  3. Click on Create and your group will be mapped to Canto.

 

How to map Custom Roles to Canto using Entra Group IDs

Note: These roles have to be managed within Entra.
You can map custom roles to Canto by inserting Entra Group IDs in the Add New Custom Role dialog. To map the Contributor or Consumer role, please contact the Support Team.

  1. Navigate to User menu > Settings > Users & Groups > Privileges
  2. Click on the plus icon to add a new custom role.

     

  3. Insert an Entra (Azure) Group ID.

Was this article helpful?

1 out of 1 found this helpful

Have more questions? Submit a request