-
Type:
Suggestion
-
Resolution: Unresolved
-
Component/s: IdP SSO - Microsoft Azure
-
None
-
4
Issue Summary
Azure AD Osync (Automatic Sync) is only capable of syncing users and groups, it can’t be used to control authentication, so there is no SAML SSO included with the connection.
To get this functionality, admins need to maintain two Azure AD applications, the Osync application for provisioning and the default Atlassian Cloud app for SAML SSO. This adds more complexity when maintaining both applications.
Steps on How to Configure SSO with Azure Automatic Sync can be found here: Configure user provisioning with Azure AD for nested groups
Suggested Solution
Provide an SSO integration with the current OSync solution, so that we don't need to maintain the users/groups and configuration in two separate applications.