Use Cases
To ensure the successful implementation of the Entra ID External Authentication Method, users must have the same User Principal Name (UPN) value in both Entra ID and SAS PCE.
The following use cases outline scenarios related to provisioning users from Entra ID to SAS PCE:
- 
Synchronization via SafeNet Synchronization Manager 
 When Active Directory (AD) users with UPNs are synchronized to SAS PCE using the SafeNet Synchronization Manager, the UPN must be mapped using the Alias attribute in the synchronization settings.
- 
Dual Synchronization to SASPCE and Entra ID 
 When users are synchronized from AD to both SAS PCE and the Entra ID tenant, both the ImmutableID and UPN attributes must be present and correctly configured.
- 
Manual User Creation 
 When users are manually created in both SAS PCE and Entra ID, the UPN in Entra ID must match the SAS ID in SAS PCE to enable successful authentication.