Validate access token received by Azure IDP

Can anyone respond to this post, with exact steps to be followed to make this feature work for Azure IDP users? with the document Securing Applications and Services Guide, I understand that the provider’s(Azure AD) user info service will be invoked by keycloak, so which means any additional configuration to be done on Azure AD side?

