Support Support HYPERPLANNING
  • Delegate teacher and student authentication to the Azure portal

Users connecting to their Webspace must authenticate themselves with a username and password. This step can be delegated to Azure Active Directory's unique authentication service.

Case No. 1: User authentication delegated to Azure portal

  1. From the panel My Schedules of the console , Go to the tab HYPERPPLANNING.net then to the tab Delegate the authentication.
  2. Tick the box in the column Active in front of the delegation configuration to be used.
  3. In the table, tick the Webspaces for which delegation will be active

  1. Publish the base

Case No. 2: User authentication is not delegated to the Azure portal

Create a corporate application on the Azure portal

  1. Access to your Azure portal
  2. Go to Azure Active Directory and select Corporate applications > All the applications.
  3. Click on New application.
  4. Click on Create your own application.
  5. Give your application a name and choose Integrate another application that you can't find in the gallery (non-gallery).
  6. In the pop-up window, choose Configure unique authentication.
  7. Choose the protocol SAML.
  8. In Part 3, SAM Certificates, copy the URL of the application federation metadata.
  9. Go to HYPERPLANNING hosting console to recover delegation information.

Delegate the authentication to the Client via a SAML2 Server

  1. From the panel My schedules of the console , go to the tab HYPERPPLANNING.net  then to the tab Delegate the authentication.
  2. On the line SAML2 Protocol, click on the button to enter a new configuration. You can enter several per protocol, but only one can be activated (double-click in the column Active).

  1. In the pop-up window, enter:
    • A name for the delegation configuration.
    • the SAML server URL recovered from the Azure portal in the previous step, validating with the key Enter from your keyboard (recovery of the configuration XML file).
  2. If you want users to be able to access HYPERPLANNING without having to go through the SAML server, tick Authorize authentication by the Controller, without going through the SAML server
    In this case, users will be able to connect with their HYPERPLANNING username and password from the indicated URL.

  1. Copy the URL of HYPERPLANNING.net for the Saml server and recover the XML configuration file to be used on the Azure portal.
  2. Click on the button Validate.
  3. In the table, tick the Webspaces for which the delegation will be active.
  4. Tick in the column Active to activate the protocol and publish the base.

Configure the corporate application on the Azure portal

  1. Return to the unique authentication configuration on the Azure portal.
  2. Click on Load the metadata file and select the file configurationSaml.XML that you recovered in the previous step.
  3. In the pop-up window, click on Save.

Reconciling Azure users with HYPERPLANNING users

  1. Go to the portal Azure > Azure Active Directory > Users.
  2. Click on Download the users.
  3. Edit the downloaded csv file to replace commas with semicolons.
  4. Go to the display Communication > Identity management > Reconciliation of the identities of the Client HYPERPLANNING .
  5. Select Saml in the upper drop-down menu.
  6. Select the user category from the lower drop-down menu.

  1. Click on to select the CSV file recovered in the previous step.
  2. In the pop-up window, click on Browse to identify the *.csv file.
  3. Select Semi-colon as a field separator.
  4. Reconcile the fields in the csv file with the fields available in HYPERPLANNING
    • userPrincipalName corresponds to Identifiant Partenaire;
    • surname corresponds to Nom;
    • givenName corresponds to Prénom.
  5. Select at least the fields surname and userPrincipalName. The field givenName is required for homonyms.
  6. Click on Import.
Was this content useful to you?

Can't find an answer to your question ?

Contact our support

INDEX ÉDUCATION | © 2024 - B