With PingCentral, OIDC client authentication can only occur if PingFederate is correctly configured with the appropriate data sources, password credential validators, authentication policies, policy contracts, policy contract mappings, persistent grants, and access token mappings. In this version, you cannot create clients with direct adapter mappings to an IdP adapter.

Diagram that shows which PingFederate components are used to authenticate an OIDC client. In this version, PingCentral only orchestrates clients, OIDC policies, and access token managers.