How to configure Azure AD with TSAT.

How to configure Azure AD with TSAT.

  1. To begin, access the Azure Portal using your Azure account by visiting the URL: https://portal.azure.com.

  1. Next, proceed to "Azure Active Directory" or utilize the search bar to locate "App registrations."

  1. Click on the "New registration" option to initiate the creation of a new app registration.

  1. Provide a suitable name for the app and choose "multi-tenant" as the account type. Additionally, specify the Redirect URL for user authentication.

  1. Once you have named the app, you will be prompted to determine the user group or access permissions for this application or API.

  1. After configuring the API access for the application, proceed to fill in the Redirect URI section with the URLs:
        INDIA-Region: https://admin.tsat.threatcop.com/
       UAE-Region: https://uae.tsat.threatcop.com/
        KSA-Region: https://ksa.tsat.threatcop.com/


  1. To complete the registration process, click on the "Register" tab located at the bottom left corner of the page.

  1. Following a successful registration, navigate to the overview section and locate the "Redirect URI's" link.

  1. Scroll down to the section that says “Single-page application” and paste the following URLs
      INDIA-Region: https://admin.tsat.threatcop.com/department/groups
      UAE-Region: https://uae.tsat.threatcop.com/department/groups
      KSA-Region: https://ksa.tsat.threatcop.com/department/groups

  1. Save the changes after adding the redirect URI's to the application.

  1. After registration, navigate to the API Permissions Section on the sidebar menu on the dashboard.
      
  1. On the API Permissions page, proceed to select the "Add Permissions" option.

  1. Following the previous step, a pop-up window will appear, resembling the screenshot below. From the "Microsoft APIs" section, choose "Microsoft Graph."

  1. Post this you need to select the “Delegated Permissions” as shown below.

  1. Within the "Select Permissions" section, utilize the search bar to look for "Group.Read.All".

  1. Once the "Group Read All Permission" is displayed in the search results, please proceed to select it.
  1. After the above step, navigate to the overview section.
  1. Copy the Client ID. After doing so, open a new tab and navigate to the following URL: https://tsat.threatcop.com/settings. 

  1. Alternatively, you have the option to access the settings from the TSAT Dashboard. For clearer guidance, please refer to the image provided below.

  1. Inside the settings menu, navigate to the Azure Settings and paste the previously copied Client ID (from Step -12).

  1. Upon pasting the Client ID onto the Azure Settings in the TSAT portal, click on "Save" to apply the changes.
  2. To import users from Azure Active Directory into the TSAT dashboard, go to the User and Department section on the dashboard.

  1. Select "Groups" from the available options.

  1. Choose "Import with Azure."

  1. A pop-up will appear, prompting you to Sign Up using Azure. Provide the necessary admin account credentials.

  1. Upon successful Sign Up, a user list named "azure-directory-users" will be automatically generated on the dashboard.

  1. In case the user list is not created automatically, you can click on the refresh tab provided, and the list will then be displayed, along with the other groups.