Article Hero Background
Articles in this section

Enable Microsoft Entra SSO with NAV PRO

Introduction

This guide walks you through enabling Single Sign-On (SSO) for your drivers and operators in NAV PRO, using Microsoft Entra ID (formerly Azure Active Directory). 

Before you start, make sure you have: 

  1. Full admin access to your NAV PRO portal 
  2. Global Administrator or Application Administrator access in Microsoft Entra ID 
  3. About 20-30 minutes

You'll be moving five values between NAV PRO and Microsoft Entra during this setup:

Value Where you get it Where it goes
Tenant ID Microsoft Entra → Properties NAV PRO SSO page
Application ID Enterprise Application → Overview NAV PRO SSO page
Client Secret Value Certificates & secrets → New client secret NAV PRO SSO page
Reply URL NAV PRO SSO page Microsoft Entra Basic SAML Configuration
Role ID Custom role you create in Microsoft Entra NAV PRO SSO page

Keep this table handy — most setup issues come from mixing up which value goes where.

NAV PRO Configuration

  1. Log Into your NAV PRO portal, ensure the account you’re using as full admin access.
  2. Open up more apps and select SSO

  3. For this guide we’re going to focus on Microsoft Entra Active Directory.
  4. Select Connect under Microsoft Entra Active Directory

  5. You’ll see the following page, keep this page open we will return to it after configure a few settings in Microsoft Entra ID (formally known as Microsoft Entra Active Directory)

  6. Enter your Microsoft Entra Admin Email address into the first field

Finding your Tenant ID

  1. Get your Tenant ID by going to your Microsoft Entra ID portal → Properties and find your Tenant ID. Paste that into your NAV PRO portal (see NAV PRO Configuration Step 5 above)

Microsoft Entra Configuration

  1. Log into the Microsoft Entra portal and find Entra ID using the search bar. You should see something like this.

    SSO4.png

  2. Click AddEnterprise Application

    SSO5.png

  3. A pane will appear on the right. Enter “Trucker Path” as the name and ensure the last option is selected: Integrate any other application you don’t find in the gallery

    SSO6.png

  4. Then Create your application
  5. Congratulations you have created the application! Hang tight, we’re not quite done yet.
  6. Copy the Application ID and paste it into the corresponding field in your NAV PRO Microsoft Entra setup module
  7. Click Set up single sign on

    SSO7.png

  8. Select SAML

    SSO8.png

  9. Edit Basic SAML Configuration

    SSO9.png

  10. Press Add Identifier and enter truckerpath as one of the identifiers

    SSO10.png

  11. Go back to the NAV PRO page we opened up earlier. Copy the Reply Link

  12. Paste that link into the Reply URL link in the Microsoft Entra Entra ID portal.

    SSO12.png

  13. Click Save and close this pane
  14. Navigate back to Microsoft Entra ID main dashboard by clicking this:

    SSO13.png

  15. On the left panel find App RegistrationsAll Applications
  16. Select your recently created application

    SSO14.png

  17. Select Certificates and secrets from the left panel
  18. Navigate to Client SecretsNew client secret. Fill in the fields below accordingly and click Add

    SSO15.png

  19. Microsoft Entra will show two values after you create the secret: Secret ID and Value. Copy the Value, not the Secret ID, and paste it into the Client Secret field in NAV PRO. The Value is only shown once, so grab it now before navigating away.

Role Configuration

For configuring roles you will have to create a custom role for your users. For more information see here.

 

  1. Once you have setup your custom roles.
  2. Sign in to the Microsoft Entra admin center as at least a Privileged Role Administrator.

  3. Browse to Identity > Roles & admins > Roles & admins.

  4. Select the Manage user and group assignments role.

    Open Roles and Administrators and search for the custom role

  5. Select Add assignment, select the desired user, and then click Select to add role assignment to the user.

    Add an assignment for the custom role to the user

  6. To grant permissions to assignees to manage users and group access for all enterprise apps organization-wide, start from the organization-wide Roles and Administrators list on the Microsoft Entra ID Overview page for your organization.
  7. To grant permissions to assignees to manage users and group access for a specific enterprise app, go to that app in Microsoft Entra ID and open the Roles and Administrators list for that app. Select the new custom role and complete the user or group assignment. The assignees can manage users and group access only for the specific app.
  8. To test your custom role assignment, sign in as the assignee and open an application's Users and groups page to verify that the Add user option is enabled.

    Verify the user permissions

  9. Once the role is created and assigned, get the role ID and add it to the fields in the NAV PRO portal.
  10. Press Save and allow 10-20min for everything to connect.

Troubleshooting

Login still failing after 20 minutes? Double-check that the Reply URL in Microsoft Entra matches exactly what's shown in NAV PRO, and that you entered the Client Secret Value, not the Secret ID.

Users can't be assigned to the app? Confirm the custom role was created and assigned before adding the Role ID to NAV PRO.

Was this article helpful?
0 out of 0 found this helpful

Comments

0 comments

Please sign in to leave a comment.

Additional Resources

  • Our helpline hours:

    8:00am - 8:00pm CST Monday to Friday; 9:00am - 6:00pm CST Saturday

  • Follow us on our socials

    Get the latest news and updates first