How to provide Microsoft Entra details for AMS Single Sign-On setup

Modified on Wed, 6 May at 1:30 PM

To configure Single Sign-On for AMS, we need your Digital Services/IT team to create or configure an application in Microsoft Entra ID and provide a few details.


Once these details have been supplied, we can complete the SSO configuration on the AMS application.


Information we need from your Digital Services team

Please provide the following four items:

1. Entra Secret Value

This is the Client Secret Value generated in Microsoft Entra ID.

Please note: we need the secret value, not the Secret ID.

The value is usually only visible immediately after it is created, so please copy it before leaving the page.


2. Entra Tenant ID

This is your organisation’s Microsoft Entra Tenant ID.

It is usually found in:

Microsoft Entra admin centre → Overview → Tenant ID


3. Entra Client ID

This is the Application / Client ID for the AMS app registration.

It is usually found in:

Microsoft Entra admin centre → App registrations → AMS application → Overview → Application (client) ID


4. Entra Domain Names

Please provide the domain name or names used by your organisation.

Example:

yourfireservice.gov.uk

If your organisation uses multiple domains, please include them all.

Example:

yourfireservice.gov.uk
yourfireservice.onmicrosoft.com

Redirect URLs to add in Microsoft Entra

Please add the following redirect URI for AMS:

https://ams.ignistechnologies.co.uk/sso

If you are also configuring PHA, please add:

https://pha.ignistechnologies.co.uk/sso

For AMS only, the AMS redirect URL is the one required.


Suggested Microsoft Entra setup steps

Step 1: Create or open the App Registration

In Microsoft Entra admin centre:

  1. Go to App registrations
  2. Select New registration
  3. Name the application, for example:
AMS SSO
  1. Choose the appropriate supported account type for your organisation
  2. Add the AMS redirect URI:
https://ams.ignistechnologies.co.uk/sso

Step 2: Create a Client Secret

  1. Go to the app registration
  2. Select Certificates & secrets
  3. Select New client secret
  4. Add a suitable description, for example:
AMS SSO Secret
  1. Choose an expiry period in line with your organisation’s policy
  2. Copy the Value immediately after creating it

Please send us the Value, not the Secret ID.


Step 3: Provide the required details

Please send the following details securely:

Entra Secret Value:
Entra Tenant ID:
Entra Client ID:
Entra Domain Name(s):

What happens next

Once we receive these details, we will configure SSO within AMS.

After configuration, we will arrange a short test with your team to confirm that users can sign in successfully using their Microsoft account.


Security note

Please share the Entra Secret Value using a secure method approved by your organisation. If preferred, we can arrange a short call while the details are entered directly into AMS rather than sending the secret by email.

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article