Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

SSO intergation with Azure AD, use User Principal Name to sign-in

tproescholdt
I'm New Here
I'm New Here
Those new to the Atlassian Community have posted less than three times. Give them a warm welcome!
June 15, 2023

Hello,

we have followed this article to configure SSO between JIRA data-center and Azure Active Directory (AD). In a nutshell, the process involves creating an Enterprise Application and using the default SSO capabilities of AD to configure JIRA.
Users can authenticate against AD and are then logged into JIRA.

The problem is that users need to supply the AD internal email to log into AD, whereas we would like them to use their actual email to sign in. The AD internal email takes the form f42f08g5-02f9-4f55-ba9a-4a67763d2dp1@mysubscription.onmicrosoft.com, whereas the actual email could be xzy@gmail.com or similar. The actual email is stored in the User Principal Name attribute. The Azure AD is a pure cloud installation, not synced with a on-premise AD.

We did find a description of how to setup custom policies in AD B2C to use SAML, but the process described appears very complicated for what looks to me like a standard use-case.

I am aware that this mostly a Azure AD issue. I hope that someone here has perhaps had the same issue and could point me to a solution.

Thank you

Timo

 

 

1 answer

1 accepted

1 vote
Answer accepted
tproescholdt
I'm New Here
I'm New Here
Those new to the Atlassian Community have posted less than three times. Give them a warm welcome!
June 21, 2023

Hi there, and answering my own question.

We did get it to work by using custom policies in AD B2C .

Would still be interested if there is any other solution.

Cheers,

Timo

Suggest an answer

Log in or Sign up to answer
DEPLOYMENT TYPE
SERVER
TAGS
AUG Leaders

Atlassian Community Events