A Microsoft button on the sign-in page, tied to your own directory. People use the work account they already have, you stop managing passwords, and access ends when their directory account is disabled rather than when somebody remembers to lock them here. Only accounts in the directory you name can sign in.
Registering the application on Microsoft's side is covered in the Microsoft Entra integration guide.
On your own Redmine
Requirements
- Redmine 6.0 or newer (Rails 7.2, Ruby 3.1 or newer)
- PostgreSQL 14+, or MySQL 8.0+ / MariaDB 10.6+
- A gem declared in this feature's own
Gemfile, sobundle installis required here - HTTPS, and a hostname the directory can redirect back to
Install
cd /path/to/redmine
cp -r redminepro_entra_auth plugins/
bundle install
RAILS_ENV=production bundle exec rake redmine:plugins:migrate NAME=redminepro_entra_auth
# restart Redmine
Then follow the Microsoft Entra integration guide.
Standalone behaviour
Identical. No plan gate applies.
Update and remove
Copy the new directory over the old one, run bundle install and the migrate
command, restart.
Before removing it, turn off Force Microsoft sign-in (SSO-only) and make
sure somebody has a working password. Otherwise nobody can sign in afterwards.
RAILS_ENV=production bundle exec rake redmine:plugins:migrate NAME=redminepro_entra_auth VERSION=0
rm -rf plugins/redminepro_entra_auth
# restart Redmine
Accounts created through it stay; they sign in with a password again.
Already on RedminePRO Cloud? It is installed and maintained for you: see the configuration guide.

