Skip to content

Microsoft Entra ID Authentication

Delegate DOMController API authentication to Microsoft Entra ID.


Overview

The API accepts Microsoft Entra ID authentication, so DOMController access can be delegated to an existing Microsoft identity provider instead of relying only on local DOMController accounts. DOMPloy was adapted to use Entra ID during the connection, meaning operators can sign in with their corporate identity.

This pairs with the audit trail and granular user roles introduced in the same release: identity comes from Entra ID, the role decides what that identity may do, and the audit trail records what it actually did.

Available since: Version 26.02 (June 2026 ยท API v34)


How to Use

Prerequisites

  • A Microsoft Entra ID tenant with an application registration for the DOMController
  • DOMPloy 6.4.0 or later, which carries the Entra ID login flow
  • Network access from the DOMController to the Microsoft identity endpoints

Refer to the DOMController Entra ID configuration guide shipped with the release for the tenant-side application registration and the values to report into the DOMController configuration.


Updates

26.02 โ€” June 2026

Initial Release

  • The API accepts Microsoft Entra ID authentication
  • DOMPloy uses Entra ID during the connection