Skip to content
English - United Kingdom
  • There are no suggestions because the search field is empty.

How do I edit or remove an Identity Provider?

You can update the configuration of an Identity Provider after it has been enabled, or remove it entirely if it is no longer needed. Removing an Identity Provider also removes the email domains mapped to it and may affect Users who authenticate through it.

Edit an Identity Provider:

  1. Click on the "Settings" icon in the top right corner.
  2. Go to "System" and click on "Security".edit IDp
  3. Open the Identity Provider you want to edit.open idp
  4. Click on "Edit" in the section you want to change. edit idp 2
  5. Update the values, then save. A warning message appears at the top of the screen if the Identity Provider is currently enabled, so you can confirm the impact before saving. edit idp warning

Remove an Identity Provider:

  1. Click on "Settings", go to "System" and click on "Security"
  2. Open the Identity Provider you want to remove.
  3. Click on "Remove IdP".remove IDP
  4. A confirmation dialog appears showing how many Users are currently authenticating via this Identity Provider. Choose what should happen to those Users:
    1. Disable all affected users: their access is revoked immediately.
    2. Keep users enabled: Users remain enabled but are no longer linked to this Identity Provider.
  5. If password login is enabled and you choose to keep Users enabled, you can optionally send an invitation email so affected Users can set up a password.
  6. Click on "Confirm" to remove the Identity Provider. The email domain mappings associated with this Identity Provider are also deleted.confirm remove idp

 

  • Editable fields: Name (unique, maximum 50 characters), User attributes, User validation, and Email domain mapping. Refer to How do I map email domains to an Identity Provider? for domain-specific rules.
  • If you remove the last Identity Provider, password login is automatically enabled so that Users can still sign in.
  • Users who are no longer covered by an active Identity Provider, and who do not receive a password invitation, become unresolved. Refer to What is an unresolved user?