Single Sign-on (SSO)
Directory

Microsoft Entra ID

Single sign-on (SSO) and user sync with Microsoft Entra ID, formerly Azure AD. Employees log in with Microsoft, and your directory keeps Velory's user list current.

About Microsoft Entra ID

Microsoft Entra ID, formerly Azure Active Directory (Azure AD), is Microsoft's cloud identity service. Companies use it to manage employee accounts and control how people sign in to their apps, with features like single sign-on (SSO), multi-factor authentication (MFA) and conditional access.

What the Microsoft Entra ID integration does

Connecting Entra ID gives Velory two things: a way for everyone to log in with their Microsoft work account, and an up-to-date list of who works at your company. Every device, licence and phone plan in Velory is assigned to someone on that list, so keeping it in step with your directory is what keeps the rest of your IT lifecycle accurate.

Single sign-on (SSO) with Microsoft Entra ID

Admins and employees log in to Velory with the Microsoft account they already use, so nobody has a separate Velory password to remember or reset. Once SSO is working, you can switch off email and password login and make Microsoft the only way in.

User sync and provisioning

Velory imports your existing users from Entra ID, and people you add there later show up in Velory automatically. When someone's details change in your directory, the change comes across too, so you never update the employee list by hand.

Using Entra ID alongside your HR system

If you also connect an HR system, Entra ID stays the main source of user data while the HR system adds start dates, end dates and employment status. That lets you prepare equipment for a new hire before they have a Microsoft account, using their personal email, and Velory switches them over to their company email and SSO login once they're added to Entra ID. It also means a leaver can still complete a device buyout after they've been removed from your directory.

Get started

Log in to Velory as an admin, open Settings and connect Microsoft Entra ID under Integrations. A step-by-step checklist walks you through the setup. We recommend testing SSO on your own account before you roll it out to everyone else.

Integrations are available on the Standard and Pro plans.

Data availability

When connected, users are imported with the following data points:

  • Email
  • First name
  • Last name
  • Identity provider ID (the user's ID in Microsoft Entra ID)
  • State

Data updates

User data syncs daily. If you need a change to show up sooner, you can run a sync manually with one click.

FAQ

Does Velory support Azure AD single sign-on?

Yes. Microsoft Entra ID is the new name for Azure Active Directory (Azure AD), and Velory supports SSO login through it for both admins and employees.

Can Velory sync users from Microsoft Entra ID?

Yes. Velory imports your existing users, adds new ones automatically and keeps their details up to date with a daily sync.

Can I make SSO the only way to log in to Velory?

Yes. After SSO is set up, you can turn off the email and password option so everyone signs in through Microsoft Entra ID.

Does Velory work with on-premises Active Directory?

Velory's integration connects to Microsoft Entra ID, Microsoft's cloud directory. If your users are managed in on-premises Active Directory, contact our support team to talk through your setup.

Additional resources

🔗 How to set up SSO login in Velory

🔗 How to import users via directory sync

🔗 Contact our support team to get help with setting up your directory sync

🔗 Learn more about Microsoft Entra ID

Similar integrations

Google Workspace

Employees log in to Velory with their Google account (SSO), and new or changed users sync over from Google Workspace automatically.

Okta

Okta handles login to Velory with single sign-on (SSO), and SCIM provisioning keeps your employee list up to date automatically.