Using Entra Admin Consent Activation Links - Jamf Security Cloud Portal Setup Guide

Jamf Security Cloud Portal Setup Guide

Solution
Application
Jamf Connect
Content Type
Technical Documentation
Utilities & Services
ft:locale
en-US

If you do not have the permissions required to authorize Jamf Trust in your Entra ID tenant, you can create a special Entra Admin Consent Activation link instead. This link can be used by an Entra ID administrator with the required permissions to complete the authorization.

Requirements
  • Administrator access to Jamf Security Cloud

  • Access to an Entra ID administrator with at least one of the following roles:

    • Global Administrator

    • Application Administrator

    • Cloud Application Administrator

  1. Sign in to Jamf Security Cloud as an administrator.
  2. Navigate to Integrations > Identity Providers.
  3. Click Add Connection to add a new Entra ID tenant.
  4. Add an account name for the Entra ID tenant.
  5. Click Generate Activation Link.
  6. Copy the link.
    Note:

    The link must be used by the Entra ID admin within 7 days. You may create a new link at any time.

  7. Send the link to an Entra ID administrator with the appropriate permissions assigned.

    After generating the admin consent link, the status of the Entra connection in Jamf Security Cloud will be Waiting until the Entra ID admin completes the process.

    • If the process is successful, the connection details are updated with a green checkmark and the Entra Tenant ID that has been authorized within this account.

    • If the process fails, a red cross is displayed instead. You must begin again.

After receiving and opening the admin consent link, the Entra ID administrator must follow the self-guided consent process between Jamf Security Cloud and Microsoft Entra.

Any Jamf Security Cloud administrators with the service management notifications enabled will receive an email once this step is completed.

The authorized Entra ID identity connection can now be used when defining the IdP in activation profiles.

When activating using the associated Activation Profile, the end user is authenticated and activated in Jamf Trust using their Entra ID credentials (or federated identity provider) per the Entra Manage users and groups assignment to an application.