Enable SSO for Management Console, Endpoint Client, and Proxy Authentication
- In the Lookout Management Console, select Administration > System Settings.
- On the Enterprise Authentication menu, from the Identity Provider prompt, choose the Identity Provider you created.
- Enable the Endpoint by turning on the toggle. (The Native Proxy Authentication toggle is enabled by default and cannot be disabled.)
-
In the Enterprise Proxy Authentication section, add the following to the Whitelist URLs list:
-
https://login.microsoftonline.com/<accountID>
Make sure to include the correct account ID, which is unique for each Azure AD IdP.
-
https://login.microsoftonline.com/common/GetCredentialType
-
https://aadcdn.msftauth.net/
-
https://aadcdn.msauth.net/
-
https://login.microsoftonline.com/common/SAS/BeginAuth
-
https://login.microsoftonline.com/common/SAS/ProcessAuth
-
https://login.microsoftonline.com/common/SAS/EndAuth
-
- Click Save.