What are the technical requirements for the single sign on?
In this chapter we will explain what technical requirements are necessary for using the single sign on.
- OpenID Connect protocol
- The IdP (the OpenID Connect Client) must be configured in such a way that it is possible to request a refresh token (an additional scope may be necessary - e.g. "offline_access" for the IdP AzureAD)
- Necessary scopes that are requested by Hintbox
- Openid E-Mail profile
- Groups and/or roles must be included in the user information