# Azure Active Directory Integration

SSO login with Microsoft accounts, automatic provisioning to private boards, and automated off-boarding when employees leave your Azure AD org.

- Category: Authentication
- Provider: FeatureOS
- Website: https://www.microsoft.com/en-in/security/business/identity-access/microsoft-entra-id
- Documentation: https://help.featureos.app/en/articles/azure-active-directory-integration
- Story: https://featureos.com/integrations/azure-active-directory

Enterprise teams need access control that scales. If your organization uses Azure Active Directory (now Microsoft Entra ID), you can connect it to FeatureOS for single sign-on, automatic board provisioning, and automated off-boarding. Your IT team manages everything from the same place they manage every other tool.

> **Note:** The Azure AD integration is available on the **Business Plan**.

## What Azure AD + FeatureOS Gives You

**Single Sign-On:** Users see a **"Continue with Microsoft"** button on your FeatureOS portal. One click, and they are in with their existing Microsoft credentials. No separate account, no extra password. You can enable this alongside other authentication methods or restrict login to Microsoft accounts only.

**Auto-provisioning to private boards:** When someone signs in with Azure AD for the first time, they can be automatically added to specific private boards. This is how you handle internal feedback boards where only employees should have access, no manual invitations needed.

**Automated off-boarding:** When someone leaves your organization and gets removed from Azure AD, their FeatureOS access (Board, Admin, and Member roles) is revoked automatically. No security gaps from forgotten accounts, no manual cleanup.

**Centralized identity management:** New hires get access through their Microsoft account. Departing employees lose access automatically. Your IT team maintains one source of truth for identity.

## How to Connect Azure AD to FeatureOS

1. In FeatureOS, go to **Dashboard > Organization Settings > Integrations**.
2. Click **Connect** under Azure Active Directory.
3. Log in with your **Azure AD Global Administrator account** (ask your IT team if you do not have this access).
4. Enable **Consent on Behalf of Organization**. This is mandatory for authenticated API calls to work.
5. Configure your preferences:
   - Select which private boards Azure AD users should be added to automatically.
   - Set up off-boarding rules to revoke access when users are removed from Azure AD.

Users will now see **Continue with Microsoft** on your FeatureOS portal.

## Azure AD Permissions Required by FeatureOS

The integration requests two scopes from Azure AD:

- **`Directory.Read.All`** - Lets FeatureOS check when users are added or removed from your organization.
- **`offline-access`** - Lets FeatureOS perform configured actions (like off-boarding) on behalf of the connected administrator.

## Why Enterprise Teams Use Azure AD with FeatureOS

IT teams manage access from Azure AD without maintaining a separate dashboard. Admins stop worrying about lingering access from former employees. And users get into your feedback portal with one click on their Microsoft account. Enterprise-grade access control that works without extra overhead.

## FAQ

### What is the Azure Active Directory + FeatureOS integration?

The Azure Active Directory + FeatureOS integration adds Microsoft single sign-on to FeatureOS, with auto-provisioning to private boards and automated off-boarding when users leave your Azure AD organization. Users sign in with Microsoft credentials and IT keeps one identity source of truth. It works with Azure AD (Microsoft Entra ID) for enterprise access control on your feedback portal.

### How do I set up Azure Active Directory with FeatureOS?

In FeatureOS, go to Dashboard → Organization Settings → Integrations, connect Azure Active Directory, sign in as a Global Administrator, and enable Consent on Behalf of Organization. Then choose private boards for auto-provisioning and off-boarding rules.

### Can Azure AD users be auto-assigned to private FeatureOS boards?

Yes. When someone signs in to FeatureOS with Azure Active Directory for the first time, you can automatically add them to selected private boards so internal feedback stays limited to employees without manual invites.

### How does off-boarding work with Azure AD and FeatureOS?

If a user is removed from your Azure Active Directory organization, FeatureOS revokes their Board, Admin, and Member access automatically so former employees do not keep portal access.

### What permissions does FeatureOS request from Azure AD?

FeatureOS requests Directory.Read.All to detect users added or removed in Azure Active Directory, and offline-access to run configured actions such as off-boarding on behalf of the connected administrator.

### Can I make Sign in with Microsoft the only login option on FeatureOS?

Yes. You can enable or disable authentication methods in FeatureOS so visitors only use Microsoft accounts, or keep Azure Active Directory alongside other login options.

### Which FeatureOS plan includes the Azure Active Directory integration?

The Azure Active Directory + FeatureOS integration is available on the FeatureOS Business plan.

### Who is the Azure Active Directory + FeatureOS integration best for?

Enterprise teams that already manage identity in Azure Active Directory and want secure SSO, private board provisioning, and automatic access revocation on FeatureOS.

---

Source: https://featureos.com/integrations/azure-active-directory
All integrations: https://featureos.com/integrations.md
Product overview: https://featureos.com/featureos.md
