Define Extensible SSO for Microsoft Authenticator SSO (iOS/ iPadOS)

Add Microsoft URL prefixes to the Extensible Single Sign-On (SSO) configuration so the Microsoft Authenticator app can detect and process authentication requests for supported Microsoft services.

Before you begin

You must:
  1. Add a Microsoft Authenticator SSO Payload (iOS/iPadOS).
  2. Connect Microsoft Entra ID for Microsoft Authenticator SSO (iOS/ iPadOS).
  3. Configure Conditional Access for Microsoft Authenticator SSO (iOS/iPadOS).

About this task

This is the fourth stage of configuring Microsoft Authenticator SSO for your iOS/ iPadOS devices. See Configuring Microsoft Authenticator Single Sign-On (iOS/ iPadOS). Add the Microsoft-defined login URL prefixes to the Extensible SSO tab. These prefixes enable the Authenticator app to recognize authentication requests for SSO processing.

Procedure

  1. In the Microsoft Authenticator SSO payload, navigate to the Extensible SSO tab.
  2. Select (Add) to enter each of the following Microsoft-provided URL prefixes:
    https://login.microsoftonline.com
    https://login.microsoft.com
    https://sts.windows.net
    https://login.partner.microsoftonline.cn
    https://login.microsoftonline.us
    https://login.chinacloudapi.cn (Not required in India)
    https://login-us.microsoftonline.com (Not required in India)
    Adding a URL Prefix.
  3. Select Save to apply the configuration.

What to do next

Proceed with configuring Microsoft Authenticator SSO for your iOS/ iPadOS devices by deploying the Microsoft Authenticator SSO payload and application. See Deploy the Microsoft Authenticator SSO Payload and Application (iOS/ iPadOS).