Set this up in Entra first
- App registration > Authentication > Web > Redirect URI:
http://711bi.711service.group/signin-oidc - Certificates & secrets: create a client secret and copy its Value right away.
- Token configuration > Add groups claim > Security groups.
- Create a security group, add yourself, and (if the app requires assignment) assign the group to the app under Enterprise applications.
The redirect URI is built from the address you opened this page on. Entra only allows plain http for localhost, so use a real certificate for any other host.