Set Up Automated Microsoft Entra ID App Configuration for Microsoft Teams
Integration
Run the automated setup to generate the full Microsoft Entra ID App with all required
permissions and configurations, to eliminate manual configuration and reducing setup
errors.
Required Editions
Available in: Lightning Experience
Available in: Enterprise, Performance, and Unlimited
Editions with Agentforce IT Service.
Set Up Microsoft Entra ID App Automatically
Run setup to automatically configure the Microsoft Entra ID app, including swarming,
Single Sign-On (SSO), permissions, and redirect URLs.
From Setup, select Salesforce Go, and then search for Microsoft
Teams for Employee Service on the Salesforce Go Home page.
Select Microsoft Teams for Employee Service.
To automatically configure the Microsoft Entra ID app, including permissions and redirect
URLs, under Set Up Microsoft Entra ID App, click Run Setup.
On the Run Automated App Setup page, select Swarming and SSO, then click
Next.
Swarming: Configures the delegated app with the required Microsoft Graph permissions and
org auth-callback redirect URL.
SSO: Configures the delegated app with the preferred Experience Cloud site redirect URL
and Teams extension.
To automatically complete the Microsoft Entra ID app setup, on the Review Steps page,
click Run Setup.
On the Setup Complete page, review the status of each step, and then click
Close.
Configure Authentication Provider
Configure the Auth. Provider for secure communication between Salesforce and Microsoft
Teams.
From Setup, in the Quick Find box, enter Auth Providers, and then
select Auth Providers.
On the Auth Providers page, find and open the
microsoft_auth_provider Auth Provider.
Click Edit.
Enter Consumer Key and Consumer Secret.
For Authorize Endpoint URL, enter
https://login.microsoftonline.com/{tenant_id}/oauth2/v2.0/authorize and the for Token Endpoint
URL, enter https://login.microsoftonline.com/{tenant_id}/oauth2/v2.0/token. Replace the
{tenant_id} placeholder with your actual Azure Tenant ID.
For Registration Handler Type, select Apex.
For Registration Handler, select MsTeamsItsmSSOHandler. If
MsTeamsItsmSSOHandler isn’t available, to refresh the latest configuration, go to Salesforce
Go and turn Microsoft Teams for Employee Service off and then back on.
To maintain security best practices, for Execute Registration As, select a user account
with only the Manage Users permission.
Save your changes.
Did this article solve your issue?
Let us know so we can improve!
Loading
Salesforce Help | Article
Cookie Consent Manager
Cookie Consent Manager
General Information
Required Cookies
Functional Cookies
Advertising Cookies
General Information
We use three kinds of cookies on our websites: required, functional, and advertising. You can choose whether functional and advertising cookies apply. Click on the different cookie categories to find out more about each category and to change the default settings.
Privacy Statement
Required Cookies
Always Active
Required cookies are necessary for basic website functionality. Some examples include: session cookies needed to transmit the website, authentication cookies, and security cookies.
Functional Cookies
Functional cookies enhance functions, performance, and services on the website. Some examples include: cookies used to analyze site traffic, cookies used for market research, and cookies used to display advertising that is not directed to a particular individual.
Advertising Cookies
Advertising cookies track activity across websites in order to understand a viewer’s interests, and direct them specific marketing. Some examples include: cookies used for remarketing, or interest-based advertising.