For the complete documentation index, see llms.txt. This page is also available as Markdown.

External OIDC secure enrollment

When External OIDC is enabled, users have the possibility to securely enroll (automatically create a Defguard account) and very easily configure their desktop client just by logging in with the SSO provider.

Step-by-step guide

  1. Go to Edge site

  1. Click "Launch enrollment"

  1. Click "Sign in with Google" (in this example)

For this to work, see OpenID enrollment.

Troubleshooting

Sign in with External SSO section not visible after configuring the external SSO

Make sure the External SSO is configured properly and reachable from the Defguard Core service.

After clicking the Launch enrollment button check the Core service logs. Look for error messages similar to:

Last updated

Was this helpful?