Note: This is an administrator task and requires privileges to manage enterprise applications in Microsoft Entra ID.
How access works
Access to Enaimco is governed by two separate layers:
Who can sign in — controlled by your organization in Microsoft Entra ID (this article).
What they can do once signed in — controlled by roles and permissions assigned by your designated user administrator inside the Enaimco application during onboarding.
Restricting access in Entra controls the first layer: it determines who is allowed to authenticate at all, before any role is applied.
1. Open the Enaimco enterprise application
In the Microsoft Entra admin center, go to Enterprise applications and select the Enaimco Application. The Application Id is ‘55f676db-719b-47d0-8daf-60151955f4bf’.
2. Require assignment
Under Properties, set Assignment required? to Yes, then save.
With this enabled, only the users and groups you explicitly assign can sign in to Enaimco. Everyone else in your tenant is blocked at sign-in.
3. Assign the users or groups who should have access
Under Users and groups, add the specific people or security groups that should be able to access Enaimco.
We recommend assigning security groups rather than individual users. This lets you manage Enaimco access through your existing group membership processes (when people join, move, or leave) without having to update the application each time.
Once complete
Only assigned users and groups will be able to sign in. Their permissions inside the application are still governed by the roles assigned by your Enaimco user administrator.