Setting Up Authentication for OpenID
1 min
to set up users for authentication via the , refer to setting up itsm users for authentication via the neurons platform docid\ wnkkhhscs2a4b5njr5ng4 and authentication https //help ivanti com/ht/help/en us/cloud/vnow/authentication htm this feature is early access only and may not be available in your environment for more information, please contact your customer success manager from the configuration console, click configure > security controls > authentication providers to open the authentication providers workspace from the new record menu drop down list, select new open id enter data into the fields field description default specifies if this authentication provider is called automatically set by the application you change this in the list to make this authentication provider the default, you must first change the default setting for all other authentication providers to false and then change the default setting for this authentication provider to true disabled specifies if this authentication provider is disabled name the name of the openid provider open id provider url the openid url from the provider for example, the openid url for google is https //accounts google com/ well known/openid configuration https //accounts google com/ well known/openid configuration logout url the url to which users are directed when logging out of the authentication provider after logging out from , the openidconnect endsession endpoint is called and clients in the same browser session are also signed out sort order specifies the sort order of this provider in relation to other providers assigned to a user a value of 1 means that this provider is used first for authentication when logging in if a login failure occurs (such as a server failure or incorrect password), the application uses the next provider in the sort order the last successfully authenticated login is highlighted in the enable external auth area of the employee record use this field only if multiple authentication providers are configured do not put the openid authentication first in a sort order for multiple authentication providers because the application does not sequence single sign on logins only one is allowed if the login attempt fails with the openid authentication, there is no fallback auto provisioning adds new users via authentication you have the option to auto provision the role, status, and team for the new user if selected, the application creates an employee record if a user logs in using authentication and does not already have an employee record the employee record created shows the is auto provisioned box checked and the creation method field has auto provisioned through openid by default auto provision role only displays if you check auto provisioning the role associated with the new user auto provision status only displays if you check auto provisioning the status of the new user auto provision team only displays if you check auto provisioning the team associated with the new user auto provision user business object only displays if you check auto provisioning the type of user record to create can be either employee or external contact click save
