Register Devices for Microsoft Authenticator SSO (iOS/ iPadOS)

Register iOS/ iPadOS devices with Microsoft Entra ID to enable automatic sign-in to Microsoft Authentication Library (MSAL) apps using Microsoft Authenticator Single Sign-On (SSO).

Before you begin

Complete all previous configuration stages:
  1. Add a Microsoft Authenticator SSO Payload (iOS/iPadOS).
  2. Connect Microsoft Entra ID for Microsoft Authenticator SSO (iOS/ iPadOS).
  3. Configure Conditional Access for Microsoft Authenticator SSO (iOS/iPadOS).
  4. Define Extensible SSO for Microsoft Authenticator SSO (iOS/ iPadOS)
  5. Deploy the Microsoft Authenticator SSO Payload and Application (iOS/ iPadOS)

About this task

This is the final stage of configuring Microsoft Authenticator SSO for your iOS/ iPadOS devices. See Configuring Microsoft Authenticator Single Sign-On (iOS/ iPadOS). In this step, end users register their devices with Microsoft Entra ID to enable seamless sign-in to MSAL-based apps such as Microsoft Teams or Outlook.

Procedure

  1. On the device, open the SOTI MobiControl agent.
    A prompt appears to register the device with Microsoft Entra ID.
  2. Select OK, then select Open to switch to the Microsoft Authenticator app.
    Completing the device's Microsoft registration in the SOTI MobiControl device agent.
    Opening the Microsoft Authenticator application.
    A confirmation message appears upon success.
    The device registration confirmation in the Microsoft Authenticator application.
  3. Return to the SOTI MobiControl agent and select Login.
    Logging in to the SOTI MobiControl device agent.

Results

A successful login message confirms that the user signed in with their Microsoft Entra ID account and that SSO is active.
Login success message.

What to do next

Open any deployed MSAL application, such as Microsoft Teams. The user is automatically signed in using their Microsoft Entra ID credentials.