Skip to content

OneLogin with OpenID

Audience: Application Administrators

Content Summary: This page details how to configure OneLogin as your identity manager in Immuta using OpenID.

Add IAM on the App Settings Page

  1. Navigate to the App Settings page in the Immuta console and click the Add IAM button.
  2. Complete the Display Name field and select OpenID from the Identity Provider Type dropdown.

    OpenID

  3. Adjust Default Permissions granted to users by selecting from the list in this dropdown menu.

Add OpenID Connect in OneLogin

  1. Navigate to OneLogin, click Administration, and then select Applications from the Applications menu.
  2. Click Add App in the top right corner of the screen. Search for and select OpenID Connect (OIDC).
  3. Complete the Display Name field and click Save.

    Display Name

Complete the Configuration

  1. From the Identity and Access Management window in your Immuta instance, copy the Redirect URL to your clipboard.

    Redirect URL

  2. Return to OneLogin, click the Configuration tab in the left panel, and paste the URL in the Login Url and Redirect URI's fields.

    Application Details

  3. Click Save in the top right corner of this screen.

  4. Click the SSO tab in the left panel of your OneLogin account. Copy the Client ID and the Client Secret and paste these values in the corresponding fields in your Immuta instance.

    Client ID

  5. Then, right click the Well-known Configuration text from the SSO tab of OneLogin, and copy the link to your clipboard.

  6. Return to your Immuta instance, and paste this link in the Discover URL field; pasting this link here prevents you from having to manually fill out the rest of the form.

    Discover URL

  7. Return to OneLogin and scroll to the Token Endpoint section. Select POST from the Authentication Method dropdown.

    Token Endpoint

  8. Click Save.

  9. Return to your Immuta console, opt to complete the Profile Schema section, and then click Test Connection. Once the connection is successful, click Test User Login.

    Test Connection

  10. Click Save.