> For the complete documentation index, see [llms.txt](https://docs.defguard.net/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.defguard.net/1.4/features/external-openid-providers/external-oidc-secure-enrollment.md).

# External OIDC secure enrollment

{% hint style="warning" %}
This is an enterprise feature. To use it, purchase our [enterprise license](/1.4/enterprise/license.md) or ensure that your deployment does not exceed the [usage limits](/1.4/enterprise/license.md#enterprise-is-free-up-to-certain-limits).
{% endhint %}

When [External OIDC is enabled,](/1.4/features/external-openid-providers.md) users have the possibility to [securely enroll (automatically create a Defguard account) and very easily configure their desktop client](/1.4/using-defguard-for-end-users/enrollment/with-external-sso-google-microsoft-custom.md) just by logging in with the SSO provider:

<figure><img src="/files/3mXAClb2TP9dC3AVrpDK" alt=""><figcaption></figcaption></figure>

For this to work, see [External SSO/OpenID providers](/1.4/features/external-openid-providers.md#openid-enrollment).
