PingDirectory

Setting up SSO to PingDirectory from PingOne

To set up single sign-on (SSO) access from the PingOne admin console to the PingDirectory admin console, configure PingOne and PingDirectory and test the sign-on experience.

You can use groups to organize user identities, as explained in Groups in the PingOne documentation. You can also set access to applications, as explained in Application access control in the PingOne documentation.

Steps

  • To set up SSO to the PingDirectory admin console from PingOne, follow the steps detailed in Setting up SSO to PingDirectory in the PingOne documentation.

    Result:

    You have succesfully done the following:

    • Set up a matching user between PingOne and the PingDirectory environments that allows the server’s All Admin Users identity mapper to map the PingOne ID token to a PingDirectory server LDAP user.

    • Set up the OpenID Connect (OIDC) client.

    • Satisfied the configuration requirements for both the PingDirectory admin console and PingDirectory server.

      The OIDC client and the PingDirectory configuration properties are both outlined in more detail in Single sign-on with the admin console.