Active Directory Authentication Library for JavaScript (ADAL JS) helps you to use Azure AD for handling authentication in your single page applications. This preview is optimized for working together with AngularJS.
This is an early developer preview, released for the purpose of eliciting feedback. The current version is 0.0.1.
You have multiple ways of getting ADAL JS:
Via CDN:
<!-- Latest compiled and minified JavaScript -->
<script src=""></script>
Via Bower:
$ bower install adal-angular
The source is here.
For a sample demonstrating basic usage of ADAL JS please refer to this repo.
To run tests
npm install
bower install
npm test
// angular tests
karma start
Karma as test runner: You need to install the karma command line.
npm install -g karma
npm install -g karma-cli
documentation generation Install grunt; call
grunt doc
Quick usage guide
Below you can find a quick reference for the most common operations you need to perform to use adal js.
1- Include references to angular.js libraries and adal.js in your main app page. 2- include a reference to adal module
var app = angular.module('demoApp', ['ngRoute', 'AdalAngular']);
3- Initialize adal with the AAD app coordinates at app config time
// endpoint to resource mapping(optional)
var endpoints = {
"https://yourhost/api": "b6a68585-5287-45b2-ba82-383ba1f60932",
// Config to specify endpoints and similar for your app
tenant: "52d4b072-9470-49fb-8721-bc3a1c9912a1",
clientId: "e9a5a8b6-8af7-4719-9821-0deef255f68e",
instance: "",
//localLoginUrl: "/login", // optional
//redirectUri : "your site", optional
endpoints: endpoints // optional
$httpProvider // pass http provider to inject request interceptor to attach tokens
4- Define which routes you want to secure via adal - by adding requireADLogin: true
to their definition
when("/todoList", {
controller: "todoListController",
templateUrl: "/App/Views/todoList.html",
requireADLogin: true
5- Any service invocation code you might have will remain unchanged. Adal's interceptor will automatically add tokens for every outgoing call.
Optional 6- If you so choose, in addition (or substitution) to route level protection you can add explicit login/logout UX elements. Furthermore, you can access properties of the currently signed in user directly form JavaScript (via userInfo and userInfo.profile):
<!DOCTYPE html>
<title>Angular Adal Sample</title>
<body ng-app="adalDemo" ng-controller="homeController" ng-init="hmCtl.init()">
<a href="#">Home</a>
<a href="#/todoList">ToDo List</a>
<!--These links are added to manage login/logout-->
<div data-ng-model="userInfo">
<span data-ng-hide="!userInfo.isAuthenticated">Welcome {{userInfo.userName}} </span>
<button data-ng-hide="!userInfo.isAuthenticated" data-ng-click="logout()">Logout</button>
<button data-ng-hide="userInfo.isAuthenticated" data-ng-click="login()">Login</button>
<div ng-view>
Your view will appear here.
<script src="/Scripts/angular.min.js"></script>
<script src="/Scripts/angular-route.min.js"></script>
<script src="/Scripts/adal.js"></script>
<script src="App/Scripts/app.js"></script>
<script src="App/Scripts/homeController.js"></script>
<script src="App/Scripts/todoDetailController.js"></script>
<script src="App/Scripts/todoListController.js"></script>
<script src="App/Scripts/todoService.js"></script>
7- You have full control on how to trigger sign in, sign out and how to deal with errors:
'use strict';
app.controller('homeController', ['$scope', '$location', 'adalAuthenticationService', function ($scope, $location, adalAuthenticationService) {
// this is referencing adal module to do login
//userInfo is defined at the $rootscope with adalAngular module
$scope.testMessage = "";
$scope.init = function () {
$scope.testMessage = "";
$scope.logout = function () {
$scope.login = function () {
// optional
$scope.$on("adal:loginSuccess", function () {
$scope.testMessage = "loginSuccess";
// optional
$scope.$on("adal:loginFailure", function () {
$scope.testMessage = "loginFailure";
// optional
$scope.$on("adal:notAuthorized", function (event, rejection, forResource) {
$scope.testMessage = "It is not Authorized for resource:" + forResource;