Setting up AD-Sync, Single Sign-On, and Email Whitelisting

Get everything set up correctly

Single Sign-On vs. CyberPilot app username and password

AD-Sync and Single Sign-On

You can make your administrative work easier with AD-Sync and Single Sign-On. By integrating with your Azure AD, users from your AD are automatically synchronized to the CyberPilot App and they log on to the platform with their usual Azure AD login and password.  

 

CyberPilot app username and password

It's not required that you use AD-Sync and Single Sign-On. Your users can also sign in to the CyberPilot app with a unique CyberPilot app username and password. 

 

Whitelisting

Regardless of how your user's login to the CyberPilot App, we always recommend that you whitelist emails from CyberPilot to prevent emails from getting stuck in spam folders.

Guides

We have two different setup guides, depending on how you want your users to login. 

If you use AD Sync and Single Sign-On use this guide.

If you use CyberPilot username and password use this guide.

 

The guides will give you everything you need to do and know. But you can read more about AD-Sync and Single Sign-On below if you'd like. 

 

About AD-Sync and Single Sign-On

CyberPilot AD integration consists of two parts:

  • AD-Sync When a user is added to a specific group in your Azure AD, the user is also added to the CyberPilot app. If the user is removed from the Azure AD group, the user is disabled in the CyberPilot app.
  • Single Sign-On (SSO) When the user exists in the CyberPilot app, they log on to the platform with their Azure AD password.

 

Requirements 

  • Integration can only be done with Azure AD cloud. If you use on-premises AD you may be able to connect it to Azure AD, so that the CyberPilot app can connect to the Azure AD.
  • If you have configured multifactor authentication in Azure AD, then it will work with the CyberPilot App. 
  • The CyberPilot app can integrate with one Azure AD per customer.
  • All uses to be synchronized with the CyberPilot App must be in one AD group. Support for multiple AD groups is on our roadmap.
  • Users synchronized with the CyberPilot App must have User principal name (username), First name, Last name, and Email filled out in your Azure AD. Without this information they cannot be synchronized to the CyberPilot App.
  • User properties Company Name, Department, Manager, Country, Job Title, Mobile Phone, and Office Location can also be synchronized to the CyberPilot App.

 

The process for setting up AD-Sync and Single Sign-On 

  1. You must notify CyberPilot if you wish to use AD-Sync and Single Sign-On and appoint the IT employee, who is responsible for your Azure AD, with the task of setting up the AD integration for you. Make sure that the IT employee has an admin user in the CyberPilot App.
  2. CyberPilot assigns a subdomain to your account and lets you and the appointed IT employee know when it is ready.
    1. When a subdomain is configured for your account, you use https://***.app.cyberpilot.io (replace *** with the subdomain) to login to the CyberPilot app. 
    2. You coordinate with your IT employee on what users should be added to the CyberPilot app.
    3. On the planned start date your IT employee configures the CyberPilot app to synchronize with your AD and to use SSO. 
  3. When AD-Sync and Single Sign-On is configured, you are responsible for setting up internal processes for assigning users to the Azure AD group you have selected for the CyberPilot app.  

Got a question?

Contact us at support@cyberpilot.io