Microsoft Social Identity Provider Configuration Details

You can set up the Microsoft social identity provider through the Admin UI or in a conf/identityProvider-microsoft.json file. IDM generates the identityProvider-microsoft.json file when you configure and enable this social identity provider in the Admin UI. Alternatively, you can create the file manually.

The following table includes the information shown in the Admin UI Microsoft Provider pop-up window, along with associated information in the identityProvider-microsoft.json file:

Microsoft Social Identity Provider Configuration Properties
Property (UI)Property (JSON file)Description
Application IDclientIdThe client identifier for your Microsoft App
Application SecretclientSecretUsed with the Application ID; shown as application password
ScopescopeOAuth 2 scopes; for more information, see Microsoft Graph Permission Scopes.
Authorization EndpointauthorizationEndpointTypically https://login.microsoftonline.com/common/oauth2/v2.0/authorize
Token EndpointtokenEndpointEndpoint that receives a one-time authorization code and returns an access token; typically https://login.microsoftonline.com/common/oauth2/v2.0/token
User Info EndpointuserInfoEndpointEndpoint that transmits scope-related fields; typically https://graph.microsoft.com/v1.0/me
Not in the Admin UInameName of the social identity provider
Not in the Admin UItypeAuthentication module
Not in the Admin UIauthenticationIdAuthentication identifier, as returned from the User Info Endpoint for each social identity provider
Not in the Admin UIpropertyMapMapping between Microsoft and IDM

For information on social identity provider buttons and badges, see "Social Identity Provider Button and Badge Properties".

Read a different version of :