Using Sign in with Microsoft in Dynatrace SaaS SSO
Using a Microsoft corporate account and the Sign in with Microsoft option can streamline the sign-in process.
Using "Sign in with Microsoft" with Dynatrace SaaS SSO
To sign in to Dynatrace using a Microsoft account, just select Sign in with Microsoft without entering a login in the login field.
On first usage, all users are presented with a Permission requested message on the Microsoft portal, where they are asked to allow Dynatrace to process their name and email address before proceeding.
When the user selects Accept, they are redirected to the Microsoft sign-in screen, where they can easily authenticate with the credentials to their corporate Microsoft account.
Sign in with Microsoft triggers a login process using the OpenID Connect Protocol, but works in the same manner as when the user enters their email address in the Dynatrace sign-in form. Signing in with Microsoft can also accelerate the authentication process with Azure: if the user's domain is configured to use SAML federation with Dynatrace, it will be used as part of the login flow.
A user must exist in Dynatrace SaaS SSO to be able to use the Sign in with Microsoft option.
Some Azure IdP configurations prohibit users from allowing the Dynatrace OpenID Enterprise Application to give consent to profile information. For a solution, see these instructions for configuring consent and permissions in the Dynatrace Community.