> For the complete documentation index, see [llms.txt](https://center-for-the-integration-of-id.gitbook.io/generate-documentation/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://center-for-the-integration-of-id.gitbook.io/generate-documentation/developer-guides/installation/oauth-configuration.md).

# OAuth Configuration

This documentation provides the steps required to configure OAuth settings in the Angular config.json and the ASP.NET Core appsettings.json files for integration with Azure Active Directory (AAD).

### **Angular Configuration**

To configure OAuth in your Angular application, modify the `config.json` file as follows:

1. **authType**: Set this to `"OAUTH"` to enable OAuth authentication.

```json
"authType": "OAUTH"
```

2. **clientId**: Enter the Client ID from your Azure AD app registration.

```json
"clientId": "<Your Azure AD Client ID>"
```

3. **authority**: Specify the authority URL using your Azure AD tenant ID.

```json
"authority": "https://login.microsoftonline.com/{tenantid}"
```

4. **redirectUri**: Set this to the callback URI configured in Azure AD for your application.

```json
"redirectUri": "<Your Redirect URI>"
```

***

### **ASP.NET Core Configuration**

For the backend, configure the following settings in the `appsettings.json` file:

1. **UserStoreType**: Set this to `"OAUTH"` to indicate the use of OAuth for user authentication.

```json
jsonCopy code"UserStoreType": "OAUTH"
```

2. **AzureAd**: Configure the Azure AD details within this section.

```json
jsonCopy code"AzureAd": {
  "Instance": "https://login.microsoftonline.com/",
  "Domain": "<Your Azure AD Domain>",
  "TenantId": "<Your Tenant ID>",
  "ClientId": "<Your Azure AD Client ID>"
}
```

***

### **App Registration in Microsoft Entra ID**

To set up an app registration in Azure AD, follow the instructions provided in the Microsoft documentation:

1. Register app in Azure AD

{% embed url="<https://learn.microsoft.com/en-us/entra/identity-platform/quickstart-register-app?tabs=certificate>" %}

2. Once the app registration is complete, the following app roles need to be created:
   * **Administrator**
   * **Reviewer**
3. After creating the app roles, assign users to one of the following roles based on their responsibilities:
   * **Administrator**
   * **Reviewer**


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation by asking a question.

Perform an HTTP GET request on the following URL with the `ask` and `goal` query parameters:

```
GET https://center-for-the-integration-of-id.gitbook.io/generate-documentation/developer-guides/installation/oauth-configuration.md?ask=<question>&goal=<user_goal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is what the user is ultimately trying to achieve, the reason they need the answer. Sharing it helps GitBook give you a better, more relevant answer. A goal is most helpful when it describes the outcome the user wants rather than restating the question. For example, with `ask=how do I create an API token`, a goal like `automate deployments from our CI pipeline` lets GitBook tailor the answer to that use case.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
