MS Entra External and how to select OpenID Connect protocol

Zoran Milanovic 20 Reputation points
2024-08-13T17:48:45.0466667+00:00

Hello,
based on MS suggestion our project team decided to us not B2C but MS Entra External ID .
However how to select OpenID Connect protocol which seems to be supported in MSEE?
Only there is option for SAML or WS Fed

Microsoft Entra External ID
Microsoft Entra External ID
A modern identity solution for securing access to customer, citizen and partner-facing apps and services. It is the converged platform of Azure AD External Identities B2B and B2C. Replaces Azure Active Directory External Identities.
2,861 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Marilee Turscak-MSFT 36,846 Reputation points Microsoft Employee
    2024-08-14T00:29:48.7966667+00:00

    Hi @Zoran Milanovic ,

    Adding a federated OIDC identity provider is currently only supported in in Azure AD B2C tenant, which supports allowing sign in via external federated OIDC IDP identities.  (See Creating Azure AD B2C tenant and Add OIDC Identity Provider to B2C tenant \ user flow)  .  

     

    In an Entra Workforce tenant, under External Identities you can invite B2B guest users via SAML\WS-Fed Federation feature, where OIDC is not supported.

     

    If you are planning to invite external users to an Entra Workforce tenant and those external users have an OIDC IDP you should use B2B Guest Invitations ( Add a guest user and send an invitation )

    That said, if you need to add Entra External ID Custom OIDC external identity provider support, there is a workaround option that I will send to you in a private message.

    If the information helped you, please Accept the answer. This will help us and improve searchability for others in the community who may be researching similar questions.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.