This Wednesday | 12 PM EDT / 4 PM CEST

Action1 5 Documentation 5 SSO Authentication with Entra ID

SSO Authentication with Entra ID

To provide easy and secure access to Action1 console, Action1 enables users to log in using single sign-on (SSO) instead of maintaining Action1-specific user credentials. This explains how to configure SSO with Microsoft Entra ID (former Azure AD) as an identity provider.

Enabling SSO with Entra ID

When you sign up for Action1, you have to create the initial Action1 credentials (without SSO) and then invite the existing accounts from your organization’s Entra ID. After creating the initial Action1 credentials while signing up, follow the below steps to enable Entra ID SSO:

  1. Log in to Action1 using your initial Action1 credentials (do not click Entra ID during login).
  2. Navigate to Advanced page and select Identity Provider.
  3. Specify Entra ID as the identity provider. Keep the scope set to Enterprise. With this setting changed, all new users will use Entra ID.
  4. Invite your colleagues to use Action1: select Invite in the Users section and specify the user’s Entra ID email.

NOTE: We recommend keeping the initial non-SSO Action1 credentials for emergency recovery purposes, in case you lose access to Entra ID. Store these credentials securely, as they have Enterprise Admin access by default.

Migrating Existing Users to Entra ID SSO

Important: For the next steps, do not remove your last enterprise admin account, create a secondary enterprise admin, or elevate another user to the Enterprise Admin role. Failure to do so could lead to admin account access being lost. The next steps will delete user accounts to switch to Entra ID. The users will be unable to access Action1 until their user account migration is complete.

  1. Navigate to the Users page.
  2. Find the user account you want to switch to Entra ID and select Delete. Alternatively, set the user’s email to non-existent such as “[email protected]”. You will not be able to remove users that have roles assigned, make sure to revoke roles first.
  3. Invite the user again into Action1 by sending an invite link to their Entra ID email.