Microsoft Entra External ID
Standards

Microsoft Accounts Federation Customers

In brief

The article replaces its embedded steps and screenshot for adding the Microsoft account identity provider with a link to the shared user-flow guidance.

What Entra admins need to know

Administrators configuring Microsoft account sign-in should use the linked article to add the provider to a user flow.

This editorial summary was generated by AI from the documentation changes. Verify important details in the full Microsoft Learn article.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

[!INCLUDE applies-to-external-only]

By settingSetting up federation with Microsoft account (live.com) by using an OpenID Connect (OIDC) identity provider, you enableprovider and adding it to your user flow enables users to sign up and sign in to your applications by using their existing Microsoft accounts (MSA). After you add Microsoft account (live.com) as one of your user flow sign-in options, customers can sign up and sign in to your application by using their Microsoft account.

Prerequisites

:::image type="content" source="media/how-to-microsoft-accounts-federation-customers/msa-setup.png" alt-text="Screenshot of the Basics tab for an Open ID Connect identity provider configured for Microsoft account, including endpoint, issuer, client ID, secret, and scope values.":::

Add OIDCEnable users to sign in and sign up with the identity provider

After you configure Microsoft account as an identity provider, add it to a user flow

At this point, the MSA identity provider is set up in your external tenant, but it isn't yet available on to allow sign-in pages. To add the OIDC identity provider to a user flow:

  1. In your external tenant, browse to Entra ID > External Identities > User flows.

  2. Select the user flow where you want to add the OIDC identity provider.

  3. Under Settings, select Identity providers.

  4. Under Other Identity Providers, selectand sign-up with the identity provider you created, which is Microsoft Accountprovider. See Add an identity provider to a user flow.

    :::image type="content" source="media/how-to-microsoft-accounts-federation-customers/msa-idp-list.png" alt-text="Screenshot of the user flow Identity providers page with Microsoft Account selected under Other identity providers.":::

  5. Select Save.

Related content

Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…