Adding UCCE SSO Identity Provider
Purpose of this guide: This page is a part of the procedure to configure UCCE as an Identity Provider for User Management (enable UCCE SSO). This configuration should be done in User Management.
Audience: a user with access and credentials to User Management.
Previous steps: ensure that the secure connection is enabled on User Management and certificates used by UCCE are trusted/imported.
When: When configuring UCCE as an Identity Provider for User Management (enabling UCCE SSO).
Next steps: This is the only step.
Follow the steps to add a new Identity Provider in User Management:
Go to Identity Providers > Add provider.
From the drop down menu select the provider type UCCE SSO Connect. The screen may look differently if any identity provider was already added.
The default alias will be set as 'ucce-sso' and a newly generated Redirect URI will display at the top.
Copy the URI, as it will be needed in the next step. Do not close this screen, as it cannot be saved without providing further data from UCCE.Log in to the UCCE Identity Service Management console to register a new client – follow the instruction on the Registering a New UCCE Client page, then continue on this page with point 5.
Fill the Add Identity Provider form with the configuration of the UCCE instance:
Provide the following values:
- Authorization URL – should be defined in UCCE, check your UCCE documentation if not sure (usually it is:
https://<server_where_CUIC_is_installed>/ids/v1/oauth/authorize
) - Token URL – should be defined in UCCE, check your UCCE documentation if not sure (usually it is:
https://<server_where_CUIC_is_installed>/ids/v1/oauth/access_token
) - Client ID – the value copied from the new UCCE client configuration (in step 4).
Note that the Display Name parameter represents the name of the button displayed on the login screen. Use the 'UCCE Login' value or similar. If not configured, the alias name will be displayed by default.
Click Save to add the Identity Provider. The login via UCCE SSO is ready to use.
- Authorization URL – should be defined in UCCE, check your UCCE documentation if not sure (usually it is:
When accessing the Eleveo application, there should already be the UCCE Login button in the login dialog.