Manage identity provider links
Automation orchestrator tracks external identities as per-provider bindings to local user records. You can view and manage identity provider links from the user detail page.
Each link associates one identity provider account with one local user record. A user can have links to multiple providers and can log in through any of them.
You manage links from the Identities tab on a user's profile. Users can connect or disconnect their own links. Administrators can also transfer links between users.
When you disconnect a link, automation orchestrator revokes all sessions for that user. You cannot remove a user's last sign-in method.
View identity provider links
View which external identity providers are linked to a user account.
Procedure
- Navigate to .
- Select the user.
- Select the Identities tab.
Results
The identities table shows connected providers with their issuer URL, linked date, and last authentication date. Unlinked providers appear with a Not connected status.
Connect an identity provider link
Connect an identity provider link from your own profile to authenticate through an external provider.
Procedure
Transfer an identity provider link
As an administrator, transfer an identity provider link to associate a different external identity with a user account.
Before you begin
- You have admin permissions.
Procedure
Disconnect an identity provider link
Disconnect an identity provider link to remove the association between a user account and an external identity.
Before you begin
- You have the
adminrole, or you are viewing your own profile.
Procedure
- On the user detail page, select the Identities tab.
- Select the actions menu for the connected identity you want to remove.
- Select Disconnect.
- In the confirmation modal, select Disconnect again.
Results
Automation orchestrator prevents removing a user's last sign-in method. All sessions for the user are revoked when an identity is removed.