Enable tenant management
Tenant management allows a Service Provider administrator to set up an Identity Provider relationship with a child tenant. When enabled, tenant users can administer the tenant and log in to the tenant using Identity Provider authentication.
Enable tenant management
- Click > Service Provider > Tenants. The Tenants List page appears.
- Click next to the account that requires to have tenant management enabled.
- Select Tenant Management. The Set Tenant Management dialog box appears.
- Select Enable Tenant Management. Enabling this feature allows a user to log in to this tenant.
- Optional. Create a Default Resource Rule for the tenant account. You can only create a default resource rule when you enable tenant management for the first time.
- Optional. Disable single sign-on to force a user to re-authenticate whenever they attempt a new login.
- Optional. Prompt user for consent during authentication. When enabled, users need to provide consent to access the application.
- Optional. Enter the Max authentication age to set the maximum amount of time that can elapse before a user is required to re-authenticate during a new login attempt. Leave this field blank to disable this feature.
- Select the OIDC Signing Certificate from the drop-down list.
- Click Confirm. An Enabled flag appears in the Tenant Management column of the Tenants List page for the tenant account.
Disable tenant management
- If you need to disable tenant management for a tenant, do the following:
- Click > Service Provider > Tenants. The Tenants List page appears.
- Click next to the tenant that needs to be disabled.
- Select Tenant Management. The Set Tenant Management dialog box appears.
- Deselect Enable Tenant Management.
- Click Confirm. A Disabled flag appears in the Tenant Management column of the Tenants List page for the tenant account.