Prerequisites
Microsoft Entra ID Single Sign-On is available on the Enterprise plan.
You will need administrator access to your Microsoft Azure Portal to configure the integration.
Supported features
Contrast supports:
SSO using OpenID Connect (OIDC)
Just-in-time (JIT) provisioning: users are automatically created in Contrast when they sign in for the first time
Configuration steps
1. Microsoft Entra Tenant
Keep this value handy, you'll need it in the next step.
2. Configure Contrast
Next, add your Microsoft Entra ID settings to your Contrast account.
Sign in to your Contrast account.
Go to Settings → Integrations.
Click the Microsoft Entra ID card to open the configuration modal.
Enter the Tenant ID from the previous step.
Save your configuration.
Your Microsoft Entra ID integration is now configured.
Test the integration
To verify that everything is working correctly:
Enter your work email address (make sure it is the same email address associated with your Microsoft account).
Click Continue.
You will be redirected to Microsoft to sign in.
After successfully signing in, you will be redirected to your Contrast dashboard.
If this is the first time the user has signed in to Contrast, their account will be automatically created through just-in-time provisioning.



