Authentication
Signing in to Adcyma starts with your email address. Based on your organization's configuration, Adcyma then routes you to the right method: Magic Links (the default), Microsoft Entra ID Single Sign-On (recommended), or password sign-in where an organization has specifically enabled it.
Passwordless by default
New Adcyma organizations use passwordless authentication. Magic links and SSO eliminate risks from password breaches, weak passwords, and credential stuffing attacks.
Magic Links (Default)
Magic Links provide passwordless access by sending a time-limited login link to a verified email address. They are the default method and are active whenever SSO is disabled.
How it works
- Enter your email address on the login page
- The system generates a cryptographically secure token and sends a link to that address
- Click the link to get an active session in Adcyma
The email also contains a one-time code. If you're reading the email on a different device than the one you started signing in on, type the code into the login page instead of clicking the link.
Security details
- Links and codes are time-limited and single-use
- Requests are rate limited per email address
- Session duration is configurable with automatic extension
Microsoft Entra ID SSO (Recommended)
SSO integrates with your Microsoft identity infrastructure. When enabled, users authenticate with their existing corporate Microsoft credentials, and Adcyma inherits your Entra ID security policies.
How it works
- Enter your email address on the Adcyma login page
- Adcyma recognizes your organization's domain and redirects to your Microsoft Entra ID tenant
- Authenticate with your Microsoft credentials
- Entra ID redirects back and you're signed in with the appropriate permissions
Why SSO is recommended
- Your existing MFA policies, conditional access rules, and audit logging carry over automatically
- Users get single sign-on across the Microsoft ecosystem with no extra credentials
- Admins manage provisioning, deprovisioning, and group-based access from Entra ID
- No email-based authentication step to worry about
Switching authentication methods
Administrators can enable or disable SSO at any time through Adcyma's Identity Provider settings. When SSO is active, magic links are automatically disabled. When SSO is turned off, magic links become available again immediately. If SSO is misbehaving, users can also reach the fallback sign-in from the SSO error page.
Choosing a method
Use SSO if you have a Microsoft Entra ID tenant (Microsoft 365 or standalone) and want centralized identity management. You need user accounts in Entra ID and administrator access to configure the integration; see the SSO setup guide.
Use Magic Links if you need quick deployment without extra Microsoft configuration, or for temporary and project-based access.
Account recovery
SSO access issues
- Contact your IT administrator first for Entra ID-related problems
- If that does not resolve it, contact Adcyma Support
- As a temporary workaround, an administrator can disable SSO to restore Magic Link access
Magic Link access issues
- Check spam/junk folders and verify your email address is correct
- If links still are not arriving, contact Adcyma Support with your setup information
Verification information
When contacting support, have the following ready: organization details from initial registration, administrative contact information, original configuration details, and billing/subscription information.
Security best practices
Magic Links
- Use corporate email addresses when possible
- Set up SPF, DKIM, and DMARC for your domain
- Tell users to check email promptly, never share links or codes, and report suspicious authentication emails to your security team
SSO
- Enable multi-factor authentication for all users
- Configure conditional access policies and group-based access controls
- Review user permissions regularly and monitor Entra ID audit logs
- Follow least-privilege principles and plan for SSO availability and backup procedures
Troubleshooting
Magic Links
If you did not receive an email, check spam/junk folders, verify the email address spelling, and make sure your corporate email server is not blocking emails from Adcyma. If the problem persists, wait a while (rate limiting) and try again.
Links are time-limited and single-use. If a link is expired or already used, request a new one. If you're on a different device than the one you requested from, use the one-time code from the email instead.
SSO
If you cannot access Adcyma, verify that your Microsoft account has appropriate permissions and is active in Entra ID. Contact your IT administrator for access issues.
For redirect problems, clear your browser cache and cookies, try a different browser or incognito mode, disable browser extensions temporarily, and verify you are using the correct Adcyma URL.
Administrators can disable SSO to restore Magic Link access as a fallback. Contact Adcyma Support with company verification details if needed.
Getting started
Adcyma starts with Magic Links enabled by default. Administrators can enable Microsoft Entra ID SSO at any time and switch back if needed. See Setting Up Single Sign-On for the walkthrough.