XPM External IDP Setup for Seamless SSO

I’ve set up an external IDP using Entra so users can use SSO to access our Milestone system and overall, it’s working but I am trying to get the flow more seamless.

Currently when signing into a mobile sever, I click my external IDP and it opens a sign-in window for the Microsoft page and I can sign in as expected. However, when using other applications that utilize Entra for SSO I only have to do the sign-in process once and others will automatically use the existing token/session. With the XPM server I always have to login in again.

Is there a way to configure it so that acts more like other SSO applications that automatically use the existing?

Thanks,

James

You can try adjusting the Prompt for login setting on the External IDP tab.

This option controls whether the external IDP should silently reuse an existing session or force user verification (password / full login).

  • Management Client → Tools → Options → External IDP

  • Edit the IDP and review Prompt for login

This setting is documented here (see Prompt for login): External IDP tab (options)

The problem is not related to integration development, which is the scope of this forum. So If changing this does not resolve the issue, please create a technical support case and continue the investigation there.