Migrating LDO to Microsoft Entra
This guide explains how to migrate Lenovo Device Orchestration (LDO) to Microsoft Entra ID. This process involves setting up a new app in Microsoft Entra, collecting necessary configuration data, and updating the authentication settings in LDO. Please note that this feature is available exclusively to Organization Admins.
Access the Organization Account in LDO
- Click the down list at the top of the LDO portal and select “Configurations & Settings”
Select Organization Settings.
- Go to the Authentication tab.
- Click Change provider and follow the on-screen instructions.
Register the Application in Microsoft Entra
- Go to https://portal.azure.com/ and log in.
Select Manage Microsoft Entra ID.
- Navigate to the App registrations page.
- Click New Registration to create a new app (client app).
The Redirect URL can be entered later when you receive this value in an email/LDO dialog.
Collect Required Data
- After creating the new application, collect the required data to update the organization's authentication type to Microsoft Entra ID.
- Copy the Application (client) ID from the Microsoft Entra Portal Application Overview page.
Generate Client Secret
- Navigate to the Certificates & Secrets page.
- Create a new Client Secret and copy the secret value on that page.
Please note the secret value must be copied not the secret ID.
- Navigate to Application Overview.
- Open the Endpoints tray.
- Copy the OpenID Connect metadata document link.
- Open this link in a new browser tab and download the page info to your computer. This IDP Configuration file is required to change the organization authentication type to Microsoft Entra.
Update Organization Authentication in LDO
- Enter Client ID and Client Secret, as shown below.
Upload IDP Configuration file and click Next.
- Copy the Redirect URL either from the LDO Dialog box shown below or via email which you will receive shortly after completing the above step:
Finalize Setup
- Navigate to Apps Registration and open your app page.
- Go to Authentication section.
- Click Add a platform and select Web.
- Enter the Redirect URL.
- Save changes.
Once all steps are complete, the Microsoft Entra AD setup
is finished. Your organization can now use Microsoft Entra ID for
authentication.
Related Articles
Integrating Microsoft Entra ID with LDO
Navigate to the Microsoft Azure Portal. Proceed to Microsoft Entra ID > App registrations and select New registration. Register a new application. Securely note the following generated values: Application (client) ID Directory (tenant) ID Generate a ...
Configuring Entra ID for LDO SSO
This guide explains how to migrate Lenovo Device Orchestration (LDO) to Microsoft Entra ID. This process involves setting up a new app in Microsoft Entra, collecting necessary configuration data, and updating the authentication settings in LDO. ...
LDO DEX (SysTrack)
Lenovo Device Orchestration can be bundled with various Digital Experience Management (DEX) solutions. Currently, LDO supports integration with SysTrack by Lakeside Software. Integrations with SysTrack The LDO DEX (SysTrack) bundled solution includes ...
Setting Up LDO ServiceNow Integration
Prerequisites Before configuring the integration between LDO and ServiceNow, ensure the following prerequisites are met to establish proper synchronization: Terminology Alignment In LDO, a physical device (such as a laptop, desktop, or server) is ...
Using the Dashboard in LDO
The Dashboard is the home page of Lenovo Device Orchestration, providing an at-a-glance overview of the devices in your organization and related information. It consists of multiple widgets, each representing a different category of device ...