3.8. Single sign-on#
UCS provides single sign-on functionality with a SAML 2.0 and OpenID Connect compatible identity provider based on Keycloak. UCS doesn’t install the identity provider by default. If you need the identity provider, you need to install the app Keycloak through the Univention App Center. For information about how to install an app, see Installation/deinstallation of UCS components in the Univention App Center.
For an extensive documentation, describing the configuration of the Keycloak app, creating clients, and more, refer to Introduction in the Univention Keycloak app documentation [4].