Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

SAML 2’s metadata specification’s Chapter 2 offers details on the nature of these metadata.

Configure SSO module

Next, a connection needs to be established between the Antavo platform and the Keycloak server.
The platform and the Keycloak are connected through the configuration of SSO in the Backoffice. This can be accessed from the Modules page by typing Single Sign-On or SSO into the search field.

...

  • URL

  • Realm

  • Client ID - platform

  • Client secret
    This is generated during the Keycloak configuration.

  • Federation field- uid (default)

  • Scopes - openid profile email

...

Set up SSO login for Backoffice users
Anchor
user-login
user-login

The SSO Source and SSO ID of Backoffice users have to be added on the user editor interface to enable SSO login. Please note, that SSO login is enforced for all users by default, meaning users can log in to the Backoffice through SSO unless you turn off this restriction.
Please find instructions on the configuration of these settings here and here.