-
Notifications
You must be signed in to change notification settings - Fork 316
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
- Loading branch information
Showing
7 changed files
with
41 additions
and
16 deletions.
There are no files selected for viewing
Binary file modified
BIN
+8.44 KB
(100%)
...cs/assets/img/guides/organization/manage-organizations/assign-email-domains.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file modified
BIN
-29.2 KB
(85%)
...docs/assets/img/guides/organization/manage-organizations/edit-email-domains.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file modified
BIN
+16.2 KB
(120%)
...ation/manage-organizations/enable-email-domain-based-organization-discovery.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Binary file modified
BIN
+4.88 KB
(100%)
...cs/assets/img/guides/organization/manage-organizations/assign-email-domains.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file modified
BIN
+26.8 KB
(110%)
...docs/assets/img/guides/organization/manage-organizations/edit-email-domains.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -29,7 +29,30 @@ and user Bob and Ben, with emails `[email protected]` and `[email protected]` should be | |
1. Login to the organization (root) from the {{ product_name }} Console. | ||
2. On the {{ product_name }} Console, go to **Login & Registration**, and click **Organization Discovery** under **Organization Settings**. | ||
3. Turn on the toggle to enable email domain based organization discovery. | ||
4. Select the **Email domain discovery for self-registration** checkbox if you want to allow users to discover and self-register in sub-organizations based on their email domain. | ||
|
||
!!! note | ||
When this is enabled, following restrctions will apply to child organizations during federated authentication and user onboarding. | ||
|
||
- Users can self-register, and administrators can onboard users to child organizations, only if the users' email domains match the domains mapped to the corresponding child organization. | ||
|
||
{% if (product_name == "WSO2 Identity Server") %} | ||
|
||
- Federated authentication and Just-In-Time (JIT) provisioning for child organizations are restricted to email domains mapped to those child organizations. | ||
|
||
{% endif %} | ||
{% if (product_name == "WSO2 Identity Server") %} | ||
|
||
4. Select the **Email domain discovery for self-registration** checkbox if you want to allow users to discover and self-register in child organizations based on their email domain. | ||
|
||
!!! note | ||
To use this capability, self-registration must be enabled in the child organizations. Currently, enabling self-registration for child organizations via the console is not supported. Instead, you need to add the following configuration to the `deployment.toml` file located in the `<IS_HOME>/repository/conf` directory to enable self-registration server-wide. | ||
|
||
``` | ||
[identity_mgt.user_self_registration] | ||
allow_self_registration = true | ||
``` | ||
|
||
{% endif %} | ||
|
||
![Enable email domain based organization discovery]({{base_path}}/assets/img/guides/organization/manage-organizations/enable-email-domain-based-organization-discovery.png){: width="700" style="display: block; margin: 0; border: 0.3px solid lightgrey;"} | ||
|
||
|