23장. Setting up enterprise authentication


Set up authentication for the following enterprise systems:

참고

For LDAP authentication, see Setting up LDAP Authentication.

SAML, RADIUS, and TACACS+ users are categorized as "Enterprise" users. The following rules apply to Enterprise users:

  • Enterprise users can only be created through the first successful login attempt from the remote authentication backend.
  • Enterprise users cannot be created or authenticated if non-enterprise users with the same name have already been created in automation controller.
  • Automation controller passwords of enterprise users must always be empty and cannot be set by any user if they are enterprise backend-enabled.
  • If enterprise backends are disabled, an enterprise user can be converted to a normal automation controller user by setting the password field.

    주의

    This operation is irreversible, as the converted automation controller user can no longer be treated as an enterprise user.

23.1. Microsoft Azure active directory authentication

To set up enterprise authentication for Microsoft Azure Active Directory (AD), you need to obtain an OAuth2 key and secret by registering your organization-owned application from Azure at: Quickstart: Register an application with the Microsoft identity platform.

Each key and secret must belong to a unique application and cannot be shared or reused between different authentication backends. To register the application, you must supply it with your webpage URL, which is the Callback URL shown in the Authenticator details for your authenticator configuration.

Procedure

  1. From the navigation panel, select Settings.
  2. Select Azure AD settings from the list of Authentication options.

    참고

    The Azure AD OAuth2 Callback URL field is already pre-populated and non-editable. Once the application is registered, Azure displays the Application ID and Object ID.

  3. Click Edit, copy and paste Azure’s Application ID to the Azure AD OAuth2 Key field.

    Following Azure AD’s documentation for connecting your app to Microsoft Azure Active Directory, supply the key (shown at one time only) to the client for authentication.

  4. Copy and paste the secret key created for your Azure AD application to the Azure AD OAuth2 Secret field of the Settings - Authentication screen.
  5. For more information on completing the Azure AD OAuth2 Organization Map and Azure AD OAuth2 Team Map fields, see Organization mapping and Team mapping.
  6. Click Save.

Verification

To verify that the authentication is configured correctly, log out of automation controller and the login screen displays the Microsoft Azure logo to enable logging in with those credentials:

Azure AD logo

Additional resources

For application registering basics in Azure AD, see the What is the Microsoft identity platform? overview.

Red Hat logoGithubredditYoutubeTwitter

자세한 정보

평가판, 구매 및 판매

커뮤니티

Red Hat 소개

Red Hat은 기업이 핵심 데이터 센터에서 네트워크 에지에 이르기까지 플랫폼과 환경 전반에서 더 쉽게 작업할 수 있도록 강화된 솔루션을 제공합니다.

보다 포괄적 수용을 위한 오픈 소스 용어 교체

Red Hat은 코드, 문서, 웹 속성에서 문제가 있는 언어를 교체하기 위해 최선을 다하고 있습니다. 자세한 내용은 다음을 참조하세요.Red Hat 블로그.

Red Hat 문서 정보

Legal Notice

Theme

© 2026 Red Hat
맨 위로 이동