Overview
Anavio supports authentication using Microsoft® Entra® ID (formerly Azure Active Directory) to provide secure, streamlined Single Sign-On (SSO) access. This feature allows organizations to manage user authentication centrally through Microsoft, eliminating the need for traditional username/password sign-ins.
This guide walks you through two supported migration workflows:
- Workflow 1: Migration initiated by a Microsoft Entra Administrator.
- Workflow 2: Migration initiated by a Non-Admin with Entra Admin assistance.
Note: These workflows focus exclusively on authentication via Entra ID. Other Entra features, such as user provisioning, role management, or group synchronization, are not included in this integration.
Prerequisites
Before beginning the migration process, ensure the following conditions are met:
- Your Anavio account has not yet been migrated to Entra ID.
- The Anavio application does not already appear under:
- Microsoft Entra Admin Center → Enterprise Applications
- An active Microsoft Entra ID (Azure AD) tenant. - The user initiating the process must be assigned either a Full Access role or Manager role within Anavio.
Workflow 1: Migration to Entra ID by an Entra Admin
This workflow should be followed if the initiating user is an administrator in Microsoft Entra ID.
Steps:
- Log in to Anavio using your existing credentials.
Go to: Settings → Account → Manage through Entra ID
- Sign in to Microsoft using your Entra admin credentials.
On the Permissions requested screen:
- Check “Consent on behalf of your organization”.
- Click Accept.
After the initial sign-in, click “Provide Admin Consent”.
- Sign in again using the same Entra admin account.
On the second Permissions requested screen:
- Click Accept.
Success: The account is now managed through Microsoft Entra ID.
Users will now sign in via the “Sign in with Microsoft” button on the login screen.
Workflow 2: Migration to Entra ID by a Non-Admin User
This workflow is for users without Entra admin rights. It requires coordination with an Entra administrator to complete the process.
Steps for Non-Admin User:
- Log in to Anavio using your current credentials.
Ensure you have the Full Access or Manager role assigned.
Go to: Settings → Account → Manage through Entra.
- Sign in to Microsoft using your Entra (work) account.
On the Permissions requested screen:
- Click Accept.
Click “My administrator has provided consent – Verify”.
You will see a message that admin consent has not been granted.
Steps for Entra Administrator:
- Visit the Microsoft Entra Admin Center.
- Navigate to: Enterprise Applications → Anavio → Permissions.
- Click “Grant admin consent for <organization name>”.
- Sign in with Entra admin credentials.
On the Permissions requested screen:
- Click Accept.
Final Step for Non-Admin User:
Return to Anavio and click “My administrator has provided consent – Verify” again.
Success: The account is now connected to Microsoft Entra ID.
Sign-in will now proceed via the “Sign in with Microsoft” button.
Additional Notes
- Only one Microsoft tenant can be linked per Anavio account.
- Migration is a one-time setup per organization.
- After migration, local Anavio credentials will no longer be used for sign-in.
- If your organization uses Conditional Access, ensure Anavio is covered by the necessary Entra policies.