Manage OIDC Claims and Scopes
Use the OIDC Settings page to define the claims and scopes that can be used for adding OIDC relying party. The changes that you make to claims are applied to all the OIDC connections that use these claims.
When you configure an OIDC-based protected resource, you control which claims are sent to the application. Each claim includes customizable display text that appears in user consent forms, helping users understand what information is being shared from the identity provider (IdP) to the application.
A global scope and claim mapping configuration allows you to:
Map identity source attributes to OIDC claims
Optionally group claims into scopes by entering the name of an existing or new scope in the Scopes field
Reuse configured claims and scopes across multiple OIDC applications
This centralized configuration helps you maintain consistent, transparent, and secure data sharing between RSA ID Plus and connected applications.
Procedure
In the Cloud Administration Console, click Access > OIDC Settings.
On the Claims tab, provide the details as described in the following table.
Field Description Claim Name Name of the claim. Source
Select the source for the claim value:
Identity Source sends a user attribute from the identity source.
Constant sends a static string, for example, the name of the application.
System sends the user's authentication method information.
Property Select a property when the source is Identity Source or System, or enter a value when the source is Constant. Type Select the claim type. The Default option is selected automatically. Scopes Enter the name of an existing scope or a new scope. If you add a new scope, it appears on the Scopes tab.
Consent Description Provide a user-friendly description of the claim that is displayed when requesting the user's consent. Click the plus icon to save the claim and add another claim.
On the Scopes tab, enter the new scope. To save the scope and add another scope, click the plus icon.
Note: The Scopes tab displays the scopes added from both Claims and Scopes table. Click the expand icon to view the associated claim details.
Click Save Settings.
(Optional) To publish this configuration and immediately activate it, click Publish Changes.
Related Articles
JAMF Connect - My Page SSO Configuration using OIDC- RSA Ready Implementation Guide 10Number of Views JAMF Connect - Relying Party Configuration using OIDC- RSA Ready Implementation Guide 5Number of Views OIDC: The request could not be processed at this time when testing Anypoint Platform with the RSA Cloud Authentication Ser… 27Number of Views Integrating RSA Authentication Agent with RSA Authentication Manager 8.1 Risk-Based Authentication 8Number of Views Cloud Access Service - Relying Parties 11Number of Views
Trending Articles
RSA Announces the Release of RSA MFA Agent 2.5 for Microsoft Windows RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide RSA SecurID software token .sdtid file fails to import into RSA SecurID Software Token 5.0 for Windows How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device How to generate a PASSCODE for manual entry on a Ericsson R380 WAP phone