Reference Guide
...
SAML Authentication
Azure AD Configuration

Azure AD Configuration for Multitenancy

Azure AD SAML feature is also supported for multitenant environments.

For this, some parameters in the Kron PAM Application created on the Azure side must be edited according to Tenants previously created in Kron PAM.

For Host:

  1. Go to the newly created Kron PAM Application.
  2. Choose Single Sign-on on the left pane.
  3. Choose SAML.
  4. Click edit for Basic SAML Configuration.
Document image

Document image

Document image


For Tenant:

  1. Go to the newly created Kron PAM Application.
  2. Choose Single Sign-on on the left pane.
  3. Choose SAML.

Click edit for Basic SAML Configuration.

Document image

Document image

Document image


The SAML configuration parameters on the Kron PAM side and the TomcatCorsFilter configurations under /pam/gui/conf/web.xml will be the same as the information under the Azure AD Configuration heading.

To enable different methods option on Multitenant environments, this parameter must be set on System Configuration Manager:

  1. Open Administration > System Configuration Manager > Add New System Parameter.
  2. Add aioc.login.different.methods.enabled as true.