Single Sign On

I just recently setup my new epicor IDP so that I can login to epicare again. After I did this I recalled the SSO option. I found it in user account security maintenance and turned it on for myself. There must be some other options that need to be set because it did not work. I had to have another user login to fix my account settings before I could login again. So what am I missing? Can I use SSO to just open epicor without using a password?
Thanks for your time!

Are you on-prem Kinetic? If so, the new Epicor IDP online doesn’t connect to your on-prem Kinetic. That SSO field in UAC is based on the SSO you setup when you deploy the app server.

1 Like

We are not on prem. We are cloud DT. And most of us still run the modern/classic client, not Kinetic.

Nate - if you want to use IdP against your Epicor Cloud instance, open a ticket with support and provide them with information on what you are trying to accomplish.

In general, IdP based SSO from the Smart Client requires that IdP is integrated with your Azure AD / Entra ID instance. Without Entra ID, SSO to Kinetic can provide limited SSO for Kinetic use via the Browser - you have to logon at some point.

More configuration of your IdP user, Kinetic Server, and Kinetic User may also be required for you to use your IdP user to access Kinetic.

1 Like

Thanks Rich. We are working to fine-tune our MFA and sign-on settings. I think this is outside of my control for now. I will give our MSP this information.

Interested to see how this turns out. We haven’t pulled the trigger on SSO, yet (also cloud DT), but it is on my wish list!