| You must have an Administrator role in EG Worksense in order to enable Microsoft sign in. |
If your organization is using Microsoft Entra ID, you can allow your users to login to EG Worksense using their Microsoft work accounts, which is commonly known as Single Sign-On (SSO).
How does it work?
EG Worksense is registered as multi-tenant application that allows users to sign in with their own organization's Entra ID tenant (Customer’s tenant).
When a user signs in, EG Worksense reads the user’s name, email and the user account name. These are read as Claims values. User’s name and email are saved into EG Worksense. These are always read when the user signs in and will be updated to EG Worksense if they change.
After the first sign in, the user is automatically registered to EG Worksense with employee level permissions.
If user that has used EG Worksense leaves the organization (Customer’s tenant), the user is not automatically deleted from EG Worksense. However, the user won’t be able to sign in to the system and their data will be automatically deleted after 6 months.
Once Sign in with Microsoft is enabled, everyone in the organisation’s Entra ID directory can use sign in except Guest Users and External Users. Who can sign in cannot be limited in EG Worksense.
Technical implementation is done with Azure AD v2, https://docs.microsoft.com/en-us/azure/active-directory/develop/v2-overview
If you haven’t installed EG Worksense as a Microsoft Entra ID Enterprise Application, first see Microsoft 365 integration.
Log in to EG Worksense
Click Administration
Click Microsoft 365
Click the toggle button next to Enable Sign in with Microsoft
Once the button turns to blue you can click Save
Test by signing out of EG Worksense and signing back in with a personal Microsoft work account by clicking the Continue with Microsoft button on the sign in page
You are good to go!