This technote HPE GreenLake SSO with Microsoft Entra ID as the Identity Provider (IdP) outlines the integration, for role-based access control for the HPE GreenLake Cloud Platform (GLCP) and its integrated services, such as HPE Aruba Central. GLCP's federated SSO capabilities have recently been updated, and this document highlights the implementation steps.

The scenario involves two users admin1 and ops1 in different user groups, that'll authenticate via SSO to access the Aruba Central application within GLCP:
- admin1 will receive administrative privileges limited to a specific configuration group, allowing changes only to devices within that group.
- ops1 will be granted read-only access, enabling visibility into Aruba Central without the ability to modify configurations.
Hope you'll find it useful and as always please send through your feedback for improvement.
------------------------------
If my post was useful accept solution and/or give kudos.
Any opinions expressed here are solely my own and not necessarily that of HPE or Aruba.
------------------------------