Configuring 1Password for SSO
About this task
To configure the services to communicate with each other:
Steps
-
Open 1Password in a new browser window and select Security from the sidebar.
-
On the Unlock with Identity Provider card, click Manage configuration.
Result:
A setup wizard opens.
-
On step 1, you’re prompted to select the name of your identity provider. Select Other and then click Next.
-
On step 2, you’re prompted to provide the name of your identity provider. Select Ping Identity from the list.
-
Go to the PingOne SSO browser tab.
If it’s not already displayed, locate the new OIDC web app that you created inPingOne SSOand click the Configuration tab for the app.
-
Copy the Client ID to your clipboard, return to 1Passwordless, and paste the ID into the Client ID field.
-
In PingOne, on the Configuration tab, expand the list of URLs and copy the OIDC Discovery Endpoint to your clipboard.
-
In 1Password, paste the OIDC Discovery Endpoint URL into the Well-known URL field. Click Next.
Result:
Step 3 of the wizard displays a browser redirect URI and a native app redirect URI.
-
Copy the Browser Redirect URI value.
-
InPingOne SSO, on the Configuration tab, collapse the list of URLs and click the Pencil () icon to update the application with the redirect URIs.
-
Paste the browser redirect URI into the Redirects URIs field.
-
In 1Password, copy the native app redirect URI.
-
InPingOne SSO, click Add under the Redirects URIs field, and paste the native app redirect URI into the next redirect URI field.
-
Click Save.