Configuring an adapter instance
Configure the Microsoft IdP Adapter to determine how PingFederate communicates with Entra ID (formerly Azure AD).
Steps
- 
In the PingFederate admin console, go to Authentication > Integration > IdP Adapters. Click Create New Instance. 
- 
On the Type tab, set the basic adapter instance attributes: - 
In the Instance Name field, enter a name for the adapter instance. 
- 
In the Instance ID field, enter a unique identifier for the adapter instance. 
- 
In the Type list, select Microsoft IdP Adapter. Click Next. 
 
- 
- 
(Optional) On the IdP Adapter tab, in the Additional Parameters section, add any additional parameters to send in the authorization request to Microsoft, then map them to the local chained attribute: - 
Click Add a new row to 'Additional Parameters'. 
- 
In the Parameter field, enter the name of a query string parameter that you want to send. 
- 
In the Local Chained Attribute field, enter the name of the chained attribute whose value will be used as the parameter value in the authorization request to Microsoft. 
- 
In the Action column, click Update. 
- 
To add more attributes, repeat steps a - d. 
 
- 
- 
On the IdP Adapter tab, finish configuring the adapter instance by referring to Microsoft IdP Adapter settings reference. Click Next. 
- 
On the Actions tab, test your connection to Entra ID. Resolve any issues that are reported, and then click Next. 
- 
On the Extended Contract tab, add any attributes that you want to include in the contract. Click Next. 
- 
On the Adapter Attributes tab, set pseudonym and masking options as shown in Set pseudonym and masking options in the PingFederate documentation. Click Next. 
- 
On the Adapter Contract Mapping tab, configure the contract fulfillment details for the adapter as shown in Define the IdP adapter contract in the PingFederate documentation. Click Next. 
- 
On the Summary tab, check your configuration, then click Save.