IAM
Identity Provider
Tenant administrators can configure external identity providers for SSO. CoreLink supports OIDC, SAML 2.0, and LDAP federation. Each tenant can have a single active IdP configuration with custom claim-to-role mapping.
When a user authenticates through the external IdP, CoreLink provisions or updates their local account, syncs group memberships from IdP claims, and establishes a session with the appropriate RBAC permissions.
Key Configuration
- Protocol (OIDC, SAML 2.0, LDAP)
- Issuer URL and client credentials
- Claim mapping rules
- Group sync behavior