To allow landlords access to the back office we need to link their Entra directory to the system. In order to do this we need to know their domain. This is the part of their email addresses after the '@'.
In order to do this efficiently we would ask for you to collate all the landlords who you wish to have access so that we can set them up in one go.
When a user from a landlord initially tries to access the system this is what they will see:
The Sign you in and read your profile is essential for the Single Sign On to work as it gives our system permission to know about the currently logged in user (name, username, email addresses).
The Read all user's basic profile is optional as it just enables the ability for them to add their users into the Huume system, rather than waiting on them logging in for the first time and then assigning roles. This permission allows one of their users to search their Entra directory so they can find users and the system can get the required information to setup their access (Entra Object ID, name, username, email addresses).
This permission does require an Entra Admin to consent to this (by checking the Consent on behalf of your organisation or via the Entra Enterprise Application pane in Azure Portal).
If they are uncomfortable with granting this permission, then you can just decide not to grant the Admin Consent (i.e. don't check the Consent on behalf of your organisation ). The Huume system will still work but they just won't be able to use our Add User functionality to setup their users in advance.
However, to clarify, none of these permissions give Huume (or anyone else) access to their Entra directory. These permissions only control what their own users will have access to do whilst using the Huume system. Any requests to retrieve data from their Entra directory need to be authenticated and be from one of their valid users.
A Team will need to be created for each landlord before you can set their users up. A landlord team will typically be granted the following permissions: