Can anyone who has experience with developing SSO to Dynamics 365 provide me with an estimated effort to do so?
We're looking to build a simple SSO where our users just need to get to the Dynamics Customer Service portal home menu (no data passed, just authenticating the user). We receive a quote from our vendor which is significantly higher than I anticipated so I just want to confirm if it's really a highly time consuming development or the vendor's estimate is over inflated.
Thanks
OK, with the very big qualifier that this is based only on the info you have provided and could therefore be off by quite a bit in the real world, I would say that to do dev, testing, migration, and basic documentation, on the basis of using AD/AAD, and that the devices this would be performed on are domain joined to that same AD/AAD instance, and the the D365 tenant is also under that domain, AND that you're using just the standard CS, not USD or Omni (which brings in considerations of the channel framework versions), about 12-16 billable hours.
Again though, that assumes the other application is another cloud app using modern auth to AD/AAD and therefore just has to pass that to D365 CS plus the other qualifiers above.
(let me know if I didn't add enough qualifiers, LOL!)
"Also, is it just for the authentication? Or are they providing self-serve password reset, lockout bypass, reporting and so on?"
Just authentication so that the users can open up Dynamics without having to login. No data passed for anything, no pwd reset, no reporting; basically the simplest possible SSO to open Dynamics without having to login.
".... what app?" it's a customized online store app (similar to Shopify)
"what method is the vendor quoting you on for the tokenization" I believe they're using active directory token to authenticate.
It's really irrelevant which method they use, we just need the simplest SSO to access Dynamics, we're fine with any type of password-based method if it's less effort, even if users having to reset the password every time they change O365 password.
Also, is it just for the authentication? Or are they providing self-serve password reset, lockout bypass, reporting and so on?
OK, what is the other application and what directory is it using/providing for authentication and what method is the vendor quoting you on for the tokenization?
Sorry if I wasn't clear, not SSO from Dynamics, we needed the vendor to develop the SSO from their application to MS Dynamics 365 so that our users working on their application can navigate from that app into Dynamics main menu without having to login. We have a MS authorized partner implemented Dynamics for us and provided the app vendor with the MS Dynamics SSO documentation and directions, but their estimate for the development is significantly higher than what I anticipated.
Thanks
SSO to WHAT, exactly? It depends on what the other application is as to what the architecture might be. There's different ways to pass identity from AAD to something else depending on what the something else can work with.
Adis
136
Super User 2025 Season 1
Sohail Ahmed
81
Jonas "Jones" Melgaard
77
Super User 2025 Season 1