Skip to main content

How to set up SSO for Entra (Office 365)

Updated today

The Vanta O365 enterprise application for Entra (Office 365) allows you to enable SSO features for users managed in your Entra (Office 365) environment, creating frictionless login experience.

This guide assumes you are using Entra (Office 365) as your Primary IDP, and the integration has been connected in your Vanta instance.

Prerequisites

Procedure

  • Login to Azure and navigate to the Enterprise Applications page

  • Search for Vanta O365, If you have multiple choose the one that is the most recent and click on it:

  • You will be taken to the App Overview page. click Users and Groups

  • Click Add user/group

  • Select the users you want to assign the Vanta O365 app.
    If you want the application to be applied to all users, then it's recommended to search for and select the 'All Users' group as seen in the screenshot below, as this will ensure future users added to the group are automatically assigned the Vanta O365 app

  • Click Select, then Assign to finish assigning the app

    Screenshot 2023-10-06 at 3.27.00 pm.png

Users will now be able to login by selecting 'Continue with Microsoft' on the Login page

sso login page.png

Common Issues

  • When attempting to login I'm redirected to a page saying "Account Not Found"

  • The option to enable SSO is grayed out or not appearing in Vanta

Screenshot 2023-10-06 at 3.42.53 pm.png

Resolution

  • The most common cause for this error is the "Vanta O365" has not been assigned to that user's profile in Entra ID, or they are not assigned to the group that automatically provisions the app.

  • Check that the user:

    • is assigned to the group where the Vanta O365 app was applied

    • has the app assigned to their Entra ID user profile

    • has Office365 as the primary source of their employment information (see here on how to check this)

    • Is using the email address registered to their Vanta profile

  • Once these checks are complete, have the user:

    • clear the browser cache and cookies

    • in an Incognito browser, go to this page: https://app.vanta.com/login

    • enter their Vanta associated address and click 'Continue with email'

  • SSO option is grayed out or not appearing - If the option to enable SSO is grayed out or does not appear in Vanta, this is typically caused by the Office 365 integration not being configured to populate the People page.

    To resolve this:

    • Go to your Vanta integrations settings and open the Office 365 integration.

    • Ensure the toggle for "Use Office 365 to populate the People Page" is turned on.

    • Once this toggle is enabled, the SSO option will become available and the magic link will no longer be grayed out.

If issues persist, please reach out to [email protected] with details on what troubleshooting you have already attempted, and we will be happy to help!