The platform integrates with Microsoft Entra ID to support single sign-on and automated user provisioning via SCIM. When this integration is in place, user lifecycle actions in Entra ID — creating, updating, or disabling accounts — are automatically synchronised with the platform. Application-level roles are still assigned within the platform itself.
Before You Start
You must provide your Entra ID Tenant ID to the platform support team before beginning configuration. The tenant must be registered on the platform side before the integration can function.
Overview of the Configuration Process
Setting up the integration involves the following steps in sequence:
Create an enterprise application in Entra ID to represent the platform.
Assign the Tenant Administrator role to the administrators who will manage provisioning.
Generate SCIM provisioning credentials in the tenant administration portal.
Configure SCIM provisioning within the Entra ID enterprise application.
Add internal or guest users to the enterprise application.
Provision users and assign roles within the platform.
For detailed instructions on steps 2 through 6, see Configuring SCIM Provisioning.
Creating the Enterprise Application
The enterprise application in Entra ID is the integration point used for both authentication and provisioning. Once created, administrators manage platform access by assigning users to this application.
To create the application, an account with Entra Application Administrator permissions is required.
Open the platform application setup portal in a web browser.
Sign in with an Entra Application Administrator account.
Review the permissions requested by the Foundation Cloud for Energy application and select Accept to grant them.
Accepting the permissions registers the Foundation Cloud for Energy application within your Entra ID tenant.
To confirm the application was created:
Open the Enterprise Applications section of the Entra ID administration portal.
Locate Foundation Cloud for Energy in the list.
Once the application appears, you can proceed with provisioning configuration.
Completing a Migration from a Previous Identity Provider
If your organisation is migrating from a legacy identity provider, complete and validate the Entra ID integration before removing the old authentication configuration. Confirm that all users have been successfully provisioned and can authenticate through Entra ID before decommissioning legacy methods.
