Log in to Procore Using IdP-Initiated Azure AD (Entra ID) SSO

Tip iconAzure Active Directory is now Microsoft Entra ID

Microsoft has rebranded Azure Active Directory as Microsoft Entra ID. This instructions in this documentation are not impacted by the name change.

Objective

To log into Procore using IdP-Initiated Azure AD SSO.

Background

If your company's system administrator has added the Procore Enterprise Application to Azure AD, you can use the Steps below to sign into Procore using your Azure AD login credentials (i.e., email address and password)

Things to Consider

  • Required User Permission:

    • To complete the steps below, you must obtain valid Azure AD login credentials (i.e., email address and password) from your company's Azure AD Administrator.

  • Prerequisites:

  • Limitations:

    • Before your company's Azure AD Administrator adds Procore as an Enterprise Application in Azure AD, Procore recommends reviewing the table below to determine which configuration best satisfies your company's login requirements.

      SSO Integration

      Procore for Web

      Procore for Android

      Procore for iOS

      Procore Drive

      Procore Sync

      SP-Initiated Azure AD

      icon-check-green.png

      icon-check-green.png

      icon-check-green.png

      icon-check-green.png

      icon-check-green.png

      IdP-Initiated Azure AD

      icon-check-green.png

      icon-x-red.png

      icon-x-red.png

      icon-x-red.png

      icon-x-red.png

Steps

  1. Navigate to the Microsoft portal: http://myapps.microsoft.com/

  2. Enter your email address and click Continue.

    ms-azure-myappslogin.png

  3. Enter your password and click Sign In.

    ms-azure-password.png

  4. Under Applications page, click the Procore application.
    Note: In this example, the Administrator named the application 'Procore SSO'. Your company's Administrator may choose to use a different name.
    ms-azure-applications-page.png

    The system authenticates the user's identity and redirects them to the Procore web application.

Note icon Note

If the a user has been granted access to more than one Procore company account under the same email address containing a targeted domain, the user will have the ability to switch between company accounts in Procore without needing to re-authenticate.