The user information in BQIginite.com, for use across our various applications, can be brought into the platform in the following ways:
This article explains how to add and configure the BQ Ignite application in your Azure Active Directory. This configuration is only required at the organization level (and does not need to be repeated per product).
Add the BQ Ignite application
Adding the
BrandQuantum application into your Azure Active Directory allows the integration between our platform (BQ Ignite) and your Azure Active Directory. This results in your end-users using their Azure Active Directory credentials to automatically authenticate as users in our platform. Additionally, their active directory user information
may be utilized to populate their details in (for example) the signature metadata for
BrandMail. It is possible that we may connect more than one AAD group and we do support the connection of AAD groups within groups.
Step 1: Log into your Azure Active Directory
Step 2: Show All Applications
Under the Microsoft 365 Admin Centers choose Show All.
Step 3: Select Azure Active Directory
Under the Admin Centers choose All Admin Center.
Step 4: Select Microsoft Entra
All admin centers will then be displayed. Click the Microsoft Entra link in the new layout.
Step 5: Select your AAD
The Azure Active Directory Admin Center browser window will open. Click the Azure Active Directory link in the new window.
Step 6: Select Applications
Expand Applications, click App registrations.
Step 7: New registration
Click the New Registration button to add a new application to your Azure Active Directory.
Complete the application information.
Tip: You need only add a single application into Azure Active Directory for all BrandQuantum applications.
We recommend calling the app: BQIgnite Platform.
Click the Register button.
Application Registration Detail Configuring the BQ Ignite application
Step 9: Obtain application details
Once the application has registered, you will be redirected to the application details.
NB: You will need to send us the GUID for the Application (Client) ID and the Directory (Tenant) ID.
Please copy and paste into a TXT file the following Global Unique ID, to share with your BrandQuantum technical contact (make use of the copy to clipboard function, to avoid errors):
- Application (client) ID
- Directory (tenant) ID
Step 10: Obtain application secret
Under client secrets, please click New client secret and give it a valid description and set it either to 1 year, 2 years or Never depending on when you want the secret to expire. Click Add once completed and the secret will be added to the application. Please copy the secret value from the "Value" column and send us the hashed application secret.
This secret needs to be supplied to us as well please.
Click API permissions. In the permissions which have been granted please make sure that Group.Read.All, and User.Read.All application permissions have been granted.
This will allow us to retrieve users for a particular group and import their information into our backend to maintain user licensing and prevent any finger-capturing issues.
Please ensure that you have copied and pasted the following values into a TXT file to share with the BrandQuantum technical team:
- Application (client)
ID
- Directory (tenant) ID
- Application Secret
- Active Directory Group Name(s)
For every unique Active Directory Group created for BrandQuantum, please provide the exact name of the group(s). For example, if you have configured two different AAD groups for BrandOffice and BrandMail, you could name the groups: BQ-BrandOffice and BQ-BrandMail.