If your organization is using Microsoft Azure Active Directory (AD), you can allow your users to login to EG Worksense using their personal Microsoft work accounts.



How does it work?

EG Worksense uses a virtual Common tenant that directs users to sign in with their own organization's Azure AD tenant (Customer’s tenant).

When a user signs in, Worksense reads the user’s name, email and the user account name. These are read as Claims values. User’s name and email are saved into Worksense. These are always read when the user signs in and will be updated to Worksense if they change.

When user signs in for the first time they have to accept the terms of service and privacy statement. After the first sign in, the user is automatically registered to Worksense with employee level permissions.

If user that has used Worksense leaves the organization (Customer’s  tenant) the user is not automatically deleted from Worksense. The user however won’t be able to sign in to the system and the user is automatically deleted after 6 months.

Once Sign in with Microsoft is enabled everyone in the organisation’s Azure AD directory can use sign in except Guest Users and External Users. Who can sign in cannot be limited in EG Worksense.

Technical implementation is done with Azure AD v2, https://docs.microsoft.com/en-us/azure/active-directory/develop/v2-overview

Setup

If you haven’t installed Optimaze Worksense as an Azure Enterprise Application please see Microsoft 365 integration.

You must have Administrator role in EG Worksense in order to enable Microsoft Sign-in.

  1. Log in to EG Worksense

  2. Navigate to the ‘Administration’ tab and select ‘Microsoft 365

  3. Click the toggle button next to ‘Enable Sign in with Microsoft’.

  4. Once the button turns to blue you can click ‘Save

  5. Test by signing out of EG Worksense and signing back in with a personal Microsoft work account by clicking the ‘Sign in with Microsoft’ button on the sign in page

  6. You are good to go!