Help center support eXpress

We've collected answers to popular questions to make eXpress easy and convenient to use. Didn't find the answer to your question? Contact our support team.

OpenID

CTS
eCTS

This section configures synchronization with OpenID.

OpenID Provider

  • Keycloak version below 17
  • Keycloak version 17 and above
  • Blitz and other custom providers

Connection Parameters for OpenID

Parameter Description
Host, port, identifiers, and other OpenID connection parameters For detailed instructions, refer to the administrator documentation.
OpenID login prefill In this field, you can choose whether the login field in Keycloak forms will be automatically filled with the user’s phone number or email.

Logout Settings for OpenID

Parameter Description
Logout request by user request
(Leave Server button in the app),
Logout request by account deleted (more details),
Logout request by user deleted in OpenID provider
(user is deleted in the OpenID synchronization source),
Logout request by admin request
(Logout button for the user in the admin panel)
These logout request sources are system sources and cannot be turned off, but you can configure the auto-confirmation time for them.
Logout request when user is blocked Closing sessions and logout request when the account is blocked in OpenID.
Logout request due to missing OpenID role Closing sessions and logout request when a role is removed from the account in OpenID.
Logout request on exclusion from OpenID sync selection Automatically closes sessions and sends a logout request after the specified period of OpenID token inactivity, in days. This setting was introduced in version 3.62.
Auto-confirm after N days For each reason, you can set the number of days after which the logout request is confirmed without administrator intervention. Since version 3.58.
For immediate confirmation, select 0 days.
Delete user profiles when logout is confirmed Auto-deleting accounts synced via the OpenID from the corporate server, after a logout request is accepted.

Device Authorization Method

Selected method for the QR code authentication.

Attribute Mapping

Define which user attributes from OpenID will be used in user profiles.