Microsoft Intune can be used to preconfigure key authentication and environment settings for the mobile app, allowing organizations to control the user login experience and reduce or eliminate manual setup steps for end users.
Through Intune app configuration policies, administrators can define:
Which authentication flow the app uses (SAML vs. Forum login)
Whether users are taken directly to a login screen or prompted with the initial setup screen
Which backend instance the app connects to
Whether the SAML login screen is pre-populated with an instance name or URL
When these values are configured correctly, the app can bypass the initial setup flow entirely and route users directly to the appropriate authentication experience. If required values are missing or misconfigured, users will be redirected to the initial setup screen to manually enter the necessary information.
The following sections describe each supported configuration property, how it affects app behavior, and the conditions under which the app will automatically advance users to the correct login screen. Note that changes made in Intune may take several minutes to sync and appear in the app.
For Authentication:
true // can be true or false
Property with key “isSamlAuthenticationFlow” is responsible for selecting authentication flow type (boolean type):
- if set to “true” then mobile apps will automatically open SAML page
- if set to “false” then mobile apps will automatically open page with Forum Login
hostedinstance //hosted instance name from SP initiated url
Property with key “identityProviderUrl” is responsible for populating the “Instance Name or URL” field on the SAML Authentication page
For Instance, provide a url:
https://prodbackend.agilquest.com/ // string value
Property with key “hostedInstanceUrl” is responsible for selecting host instance (backend that we will use in app). They need to provide url of our backend (string type):
For example for US instance, place “https://prodbackend.agilquest.com” string
If “isSamlAuthenticationFlow”, & “hostedInstanceUrl” are provided
Then app will skip the initial Set Up screen and navigate user to the appropriate login screen.
If “isSamlAuthenticationFlow” or “hostedInstanceUrl” is missing
Then user should be redirected to initial Set Up screen
If “isSamlAuthenticationFlow” is true, “identityProviderUrl” is populated, & “hostedInstanceUrl” are provided
Then app will skip the initial Set Up screen and navigate user to the appropriate login screen. The “Instance Name or URL” field on the SAML Authentication page should be populated with the identityProviderUrl value
Was this article helpful?
That’s Great!
Thank you for your feedback
Sorry! We couldn't be helpful
Thank you for your feedback
Feedback sent
We appreciate your effort and will try to fix the article