Previous Topic: Proceed with the Authentication Scheme SetupNext Topic: Enable the OpenID Plug–in


Configure and Apply an OpenID Authentication Scheme

OpenID is an authentication scheme that lets you use an existing account to sign in to multiple web sites, without needing a new password. Users can create accounts with a single OpenID identity provider, and then use those accounts to log on to any website which accepts OpenID authentication.

The SSO service supports OpenID so users can sign on with OpenID providers, such Google and Facebook. The OpenID provider authenticates the user and sends an authentication response. The hosting system verifies the authentication response and completes the authentication process.

After you configure an OpenID authentication scheme, it can be associated with an OpenID authentication method configured in the User Console.

Prerequisites for the Authentication Scheme

The authentication scheme setup takes place in the CSP console. Note the following requirements before configuring the authentication scheme.

This section describes how an administrator can configure the OpenID authentication scheme. The following diagram illustrates the required tasks:

Flow diagram showing OpenID authentication scheme coniguration

Follow these steps:

  1. Enable the OpenID plug–in.
  2. Customize the OpenID forms credential collector.
  3. Modify the OpenID providers configuration file.
  4. Configure the OpenID authentication scheme.
  5. Use the authentication scheme in a policy.