Bridge // Microsoft Identity

Microsoft identity, instant access. Azure AD integrated.

Connect Microsoft Azure Active Directory to Hangar.Media and let your team sign in with their Microsoft 365 credentials. Use conditional access policies, automated provisioning, and your existing Microsoft security investments.

M365 Credentials Supported
See Pricing
Conditional Access Policies
M365 Credentials Supported
Conditional Access Policies
Auto-Sync User Provisioning
Bridge // Overview

Bring your Microsoft 365 identity to digital signage

Most enterprises already manage identity through Azure AD and Microsoft 365. The Hangar.Media Azure AD integration lets you extend that investment to your digital signage platform. Team members sign in with the same credentials they use for Outlook and Teams. IT admins manage access through the Azure portal they already know. Conditional access policies protect your signage platform just like every other enterprise application.

SSO with Microsoft 365 credentials via SAML 2.0 or OpenID Connect
Azure AD conditional access policies enforced on Hangar.Media access
Automated user provisioning and group sync via Microsoft Graph API
Azure AD security groups mapped to Hangar.Media roles and permissions
Bridge // Key Features

What you can do with Azure AD integrated.

Three capabilities that make this integration essential for your digital signage network.

Microsoft SSO // 01

Sign in with your Microsoft account

Team members click the Microsoft sign-in button on the Hangar.Media sign-in page and authenticate with their Microsoft 365 credentials. If they are already signed into Microsoft, they land in Hangar.Media without any additional prompt. True single sign-on for Microsoft workspaces.

Already signed into Microsoft? You are signed into Hangar.Media too.

One-click sign-in with Microsoft 365 credentials

Instant access if already authenticated to Microsoft

Support for both SAML 2.0 and OpenID Connect protocols

Bridge // Microsoft SSO
Conditional Access // 02

Azure security policies protect your screens

Azure AD conditional access policies are enforced when users access Hangar.Media. Require MFA from untrusted networks. Block access from non-compliant devices. Limit access to managed devices only. All enforced automatically through your existing Azure AD policies.

Your Azure security policies, automatically applied.

Network-based access restrictions

Device compliance requirements

MFA enforcement based on risk and location

Bridge // Conditional Access
Group Sync // 03

Azure AD groups drive Hangar.Media permissions

Map Azure AD security groups to Hangar.Media roles. When a user is added to a group in Azure AD, they automatically receive the corresponding permissions in Hangar.Media. Move them to a different group and their permissions change. Remove them entirely and their access is revoked.

Manage permissions in Azure AD. Hangar.Media stays in sync.

Security group to role mapping

Nested group support for complex organisational structures

Real-time sync via Microsoft Graph API webhooks

Bridge // Group Sync
Bridge // Setup

Four steps to connected screens.

From setup to live content in minutes, not days.

Step 01

Register Hangar.Media in Azure AD

Add Hangar.Media as an enterprise application in your Azure AD tenant. Use the pre-built gallery app or set up manually with the provided SAML metadata.

Step 02

Set up SSO protocol

Choose SAML 2.0 or OpenID Connect as your SSO protocol and exchange metadata between Azure AD and Hangar.Media. Test the SSO connection with a pilot user.

Step 03

Set up user provisioning

Enable automated provisioning using Microsoft Graph API. Set up which Azure AD groups sync to Hangar.Media and map group membership to platform roles.

Step 04

Apply conditional access policies

Add the Hangar.Media enterprise app to your Azure AD conditional access policies. Define MFA, device compliance, and location-based access rules.

Bridge // Questions

Common questions. Straight answers.

Does the integration work with Azure AD B2C

The integration is designed for Azure AD (now Microsoft Entra ID) for workforce identities. Azure AD B2C for customer identities is not supported for SSO. If you need external user access, use Hangar.Media native user management or Azure AD B2B guest access.

Can I use both SAML and OpenID Connect

You choose one protocol per Azure AD tenant connection. Both SAML 2.0 and OpenID Connect are fully supported. OpenID Connect is recommended for new setups as it provides a simpler setup process and supports more modern authentication flows.

How quickly are Azure AD changes reflected in Hangar.Media

Group membership and user attribute changes sync via Microsoft Graph API. Standard sync cycles run every 40 minutes. For immediate updates, you can trigger a manual sync from the Hangar.Media dashboard. User deactivation in Azure AD revokes Hangar.Media access at the next sync.

Is Microsoft Entra ID supported

Yes. Microsoft Entra ID is the new name for Azure Active Directory. The Hangar.Media integration works with Microsoft Entra ID exactly as it does with Azure AD. No setup changes are needed if your tenant has been rebranded to the Entra ID naming.

Pricing // Transparent by Design
£0
/screen/month
Industry avg
£8–24
Hangar
£5

One price. The whole platform.

That's how we think signage should work. Content editor, screen management, and 200+ app integrations — all included from day one.

No per-user fees
Unlimited users
Unlimited screens
200+ integrations
150+ templates
Multi-tenancy
Edge caching
Offline playback
REST API
Emergency alerts
Sign Up Now

Chat / Online

Pricing

£5 /screen/month

Everything included. One price.

Speed

Live in five minutes.

Sign up, connect, go.

Hardware

Use the screens you already own.

Fire TV, Android, Tizen, webOS, Pi, browser.

How can we help?

Choose an option to get started