Steps: Enable OpenID Connect Authentication with SAML SSO in Customer Central
Customer Central Security Administrators can sign in to Customer Central and enable
OpenID Connect Authentication (OIDC) for themselves and other users. You can set up
SAML Single Sign-On (SSO) authentication the same way in Customer Central as you do
in your target tenants.
- Sign in to Customer Central as a Customer Central Security Administrator.
- Google customers can skip the optional step to complete theMax OpenID Connect Session Agefield. As an OIDC provider, Google doesn't support this feature.
- Access theManage Authentication Policiesreport to add OIDC authentication in Customer Central.Complete these selections in the authentication policy that you add:
- From theRestricted to Environmentprompt, selectImplementationorSandbox.
- Define theDefault Rule for All Users.
- On theSpecificprompt, selectSAML.
- SelectActivate All Authentication Policies.
- Access theEdit Customer Central Account for Usertask to add an OpenID identifier for the Customer Central Security Administrator and other Customer Central Administrators or Users.The OpenID identifier is typically the user's Gmail ID. Once you've enabled OpenID Authentication in Customer Central, you must configure the Security Administrator's OpenID identifier to sign in to Customer Central again.Workday recommends that you assign a password to any new Customer Central user because authentication methods might change.
After you enable your account with OIDC, you can sign in to Customer Central using
your Google credentials.