Loading
Prepare for Email to Become the Default Login ExperienceRead More
Set Up Automated Microsoft Entra ID App Configuration for Microsoft Teams Integration

Set Up Automated Microsoft Entra ID App Configuration for Microsoft Teams Integration

Run the automated setup to generate the full Microsoft Entra ID App with all required permissions and configurations, to eliminate manual configuration and reducing setup errors.

Required Editions

Available in: Lightning Experience
Available in: Enterprise, Performance, and Unlimited Editions with Agentforce IT Service.

Set Up Microsoft Entra ID App Automatically

Run setup to automatically configure the Microsoft Entra ID app, including swarming, Single Sign-On (SSO), permissions, and redirect URLs.

  1. From Setup, select Salesforce Go, and then search for Microsoft Teams for Employee Service on the Salesforce Go Home page.
  2. Select Microsoft Teams for Employee Service.
  3. To automatically configure the Microsoft Entra ID app, including permissions and redirect URLs, under Set Up Microsoft Entra ID App, click Run Setup.
  4. On the Run Automated App Setup page, select Swarming and SSO, then click Next.
    • Swarming: Configures the delegated app with the required Microsoft Graph permissions and org auth-callback redirect URL.
    • SSO: Configures the delegated app with the preferred Experience Cloud site redirect URL and Teams extension.
  5. To automatically complete the Microsoft Entra ID app setup, on the Review Steps page, click Run Setup.
  6. On the Setup Complete page, review the status of each step, and then click Close.

Configure Authentication Provider

Configure the Auth. Provider for secure communication between Salesforce and Microsoft Teams.

  1. From Setup, in the Quick Find box, enter Auth Providers, and then select Auth Providers.
  2. On the Auth Providers page, find and open the microsoft_auth_provider Auth Provider.
  3. Click Edit.
  4. Enter Consumer Key and Consumer Secret.
  5. For Authorize Endpoint URL, enter https://login.microsoftonline.com/{tenant_id}/oauth2/v2.0/authorize and the for Token Endpoint URL, enter https://login.microsoftonline.com/{tenant_id}/oauth2/v2.0/token. Replace the {tenant_id} placeholder with your actual Azure Tenant ID.
  6. For Registration Handler Type, select Apex.
  7. For Registration Handler, select MsTeamsItsmSSOHandler. If MsTeamsItsmSSOHandler isn’t available, to refresh the latest configuration, go to Salesforce Go and turn Microsoft Teams for Employee Service off and then back on.
  8. To maintain security best practices, for Execute Registration As, select a user account with only the Manage Users permission.
  9. Save your changes.
 
Loading
Salesforce Help | Article