Creating an OIDC SSO authentication service in App Studio
Create an Open ID Connect (OIDC) single-sign on (SSO) authentication service so that users can authenticate using an OIDC identity provider.
- In the navigation pane of App Studio, click .
- Click New, and then click OpenID Connect.
- Enter a Name for the service.
- Click Import metadata to import metadata from your
identity provider.
- To select a URL where the metadata is stored, select via URL, enter a URL, and click Submit.
- To select a file where the metadata is stored, select via file, enter a file name, and click Submit.
- In the Client ID and Client secret fields, enter the values that were assigned by your identity provider.
- In the Map operator ID from claim field, enter the attribute name from the claim that is mapped to the Pega Platform operator ID. Enclose the attribute name in curly braces, for example, {name}.
- Optional: To automatically create an operator when the operator who is logging in does
not already exist in the Pega database, do the following steps.
- Select the Create operators for new users check box.
- In the Access role list, click the access role for the new user.
- Copy the redirect URL that is displayed under Configure your
IdP.To complete SSO configuration, you must register Pega Platform as a client (relying party) with your identity provider, using the redirect URI that you copy.
- Click Submit.
- Optional: To configure advanced functionality, on the Single sign-on (SSO) landing page, where the new service is listed, click the More icon and then click Open in Dev Studio.
- To enable the authentication service, on the Single sign-on (SSO) landing page, where the new service is listed, turn on the switch.
- Creating a Google authentication service
Create a Google SSO authentication service so that users can authenticate using Google as the identity provider.
- Creating a SAML SSO authentication service in App Studio
Create a Security Assertion Markup Language (SAML) single-sign on (SSO) authentication service so that users can authenticate using a SAML identity provider.
- Mapping authentication services in App Studio
As an administrator, configure authentication services in an application by using App Studio. This feature streamlines functionality and provides an effective and user-friendly way to configure authentication for users who are not familiar with Dev Studio.
Previous topic Creating a SAML SSO authentication service in App Studio Next topic Mapping authentication services in App Studio