API_URL
of the Hoop gateway instance{API_URL}/api/callback
as the redirect URI.User.Read
for sign in and read user profiles and email
to view userβs email address.{AppName}
{AppName}
> Overview{CLIENT_ID}/.default
id_token
. By default, Azure Entra ID propagates them in the groups
claims.
The gateway needs to be configured to match the claim name of the groups.
This configuration will ensure to sync the groups when a user authenticates on Hoop.
Configure the Groups Claim on Hoop
IDP_GROUPS_CLAIM=groups
Configure the Groups Claim on Azure
{AppName}
> Token ConfigurationADMIN_USERNAME
on your gateway to change the role of the admin user with a group associated with your application.
The name of the admin group depends on whether you propagate the groups as object IDs or as group names (see below).properties as sam_account_name
, dns_domain_and_sam_account_name
or netbios_domain_and_sam_account_name
.{AppName}
> User and Groups > Add user/group<APP_CLIENT_SECRET>