Technology Preview Feature Only: Ability to Integrate Microsoft Entra ID in App Portal

This section describes a new technology preview feature that should only be used in staging environments. The following subsections are included:

Important Information Regarding Microsoft Entra ID Integration 
Feature Overview 
Microsoft Entra ID View 
Ability to Provide Access to Users/Groups from Microsoft Entra ID 
Ability to Leverage Microsoft Entra ID Attributes for Visibility Condition 
Ability to Add Users/Groups into Microsoft Entra ID via Security Groups 
Support for Intune Deployment on Microsoft Entra Joined Device 
Installing App Portal on Entra joined Server 

Important Information Regarding Microsoft Entra ID Integration

Important:The Microsoft Entra ID capability in this release is a technology preview feature only and is not suitable for use in a production instance. This Microsoft Entra ID integration should only be enabled in a non-production environment or in a production environment where the following features (core) are not needed.

Workflow
Approval Groups
ITAM/FNMS integration (License Reservation, License Reclamation)
My Apps
Entra ID attributes can be leveraged only in Visibility condition feature.
Request On Behalf options
Security group with approval (software and general catalog items)
My Apps
Retire campaign
Upgrade campaign
Smart Uninstall
Scheduling/Leasing
Service Now integration
OSD
Clone/Migrate
Support Tools
Notifications
Cloud Apps
Reclamation Dashboard
Questions

With this release the existing customers can continue to use the Active Directory as identity and access management (IAM) in the upgraded version of App Portal 2024 R1 with resolved issues and with an ability to utilize a technology preview feature the Microsoft Entra ID integration with limited features as follows:

Data sync
Admin security
Catalog security
Deployment via Intune
Security Groups
Visibility conditions

Feature Overview

App Portal now integrates with Microsoft Entra ID, a cloud-based identity and access management (IAM) service. This integration enhances security and simplifies identity management, enabling organizations to manage and secure user identities more effectively.

Important:To ensure the App Portal capabilities function optimally in this release, it is mandatory to retain or configure Active Directory settings when using Microsoft Entra ID as the primary identity and access management (IAM) solution. In this release, Microsoft Entra ID integration supports limited features and is available as a feature preview only. In future updates, Microsoft Entra ID integration will be incrementally enhanced, gradually reducing dependencies on Active Directory and enabling standalone functionality with Microsoft Entra ID.

Microsoft Entra ID View

A new Microsoft Entra ID view has been introduced to the App Portal menu. This view enables administrators to configure and manage Microsoft Entra ID details within the portal. The Microsoft Entra ID is a different source for managing users, devices, and its attributes, this will help to get the benefits of SaaS based Microsoft Entra ID native features

For more information, see Configuring Microsoft Entra ID Settings.

Ability to Provide Access to Users/Groups from Microsoft Entra ID

The App Portal administrator can now provide the access to users and groups from Microsoft Entra ID to different capabilities in App Portal in Admin Security and Catalog Security pages respectively.

Ability to Leverage Microsoft Entra ID Attributes for Visibility Condition

The catalog items displayed to end users can be evaluated using Visibility conditions through the Microsoft Entra ID attributes which can be added to the Visibility Conditions respectively.

Ability to Add Users/Groups into Microsoft Entra ID via Security Groups

App Portal administrators can now add users, devices or both into the specified groups in the Microsoft Entra ID based on the event being configured in the Security Groups in App Portal.

Support for Intune Deployment on Microsoft Entra Joined Device

App Portal now supports software deployment through Intune on Microsoft Windows devices that are Microsoft Entra joined as well as those that are Microsoft Entra hybrid joined. This functionality helps deployment management on Microsoft Entra joined devices without relying on Active Directory.

Installing App Portal on Entra joined Server

App Portal can now be installed on a Microsoft Windows server which is Microsoft Entra joined.