---
title: Integrating internal applications
description: Onboard internal web apps and SAML applications for just-in-time access.
component: privilege
page_id: privilege:privileged-access-management:admin-tasks/access-management/internal-applications
canonical_url: https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/access-management/internal-applications.html
revdate: February 16, 2026
section_ids:
  setting-up-an-internal-web-app: Setting up an internal web app
---

# Integrating internal applications

Onboard internal web apps and SAML applications to PingOne Privilege for just-in-time access.

## Setting up an internal web app

To configure an internal web application for proxied access, follow these steps:

1. In the PingOne Privilege admin console sidebar, go to **Applications**.

2. On the **Add Applications** tab on the **Web API (HTTP)** card, click **Integrate**.

3. Enter the **Application Name** and **Frontend URL**.

   These values are displayed to users when they access the application through the user portal.

4. In the **Backend URL** field, enter the internal DNS name or IP address of the application.

5. In the **Mesh Cluster** list, select the cluster to proxy the connection.

   The PingOne Privilege gateway associated with the selected cluster must have network access to the application's backend URL. If required, provision a new gateway before proceeding.

6. Click **Create**.

The application is now available in the inventory and can be assigned to users through a just-in-time access policy.
