This guide walks you through the process of configuring Clavister IdAuth Cloud and Portainer to establish seamless integration using OpenID Connect between the two systems. To achieve this, you will need to perform specific configuration steps in both Portainer and Clavister Cloud Services. The guide uses our example companyShieldIT as<company_name> through the different steps.
Assumptions
The Nextcloud server is on https://portainer.fqdn:9443/, replace with the real hostname of the Portainer server.
Clavister IdAuth Cloud Configuration
- Navigate to Add-ons and OpenID Connect Provider
- Click on Add new button and choose the Custom type
- Provide a name for the Relaying Party
- Enter the Redirect URI, https://portainer.fqdn:9443/
- Save
Portainer Configuration
- Navigate to Settings and Authentication
- Select OAuth
- Enable Automatic user provisioning
- Enable Automatic team provisioning
- Claim name - groups
- Enable Assign admin rights to group(s) - the Role in IdAuth Cloud that should give admin rights
- Select Custom OAuth provider and fill in the following OAuth Configuration
- Client ID - Copy from the previous created OpenID Connect Provider
- Client secret - Copy from the previous created OpenID Connect Provider
- Authorization URL - https://iam.shieldit.sase.eu/authentication/oidc/oidc/login
- Access token URL - https://iam.shieldit.sase.eu/authentication/oidc/oidc/token
- Resource URL - https://iam.shieldit.sase.eu/authentication/oidc/oidc/userinfo
- Redirect URL - https://portainer.fqdn:9443/
- Logout URL - https://iam.shieldit.sase.eu/authentication/oidc/oidc/logout
- User identifier - sub
- Scopes - openid
- Auth Style - Auth Decect
- Save settings
Related articles
How to - Using OIDC in Clavister IdAuth Cloud with Nextcloud
5 Dec, 2025 sase cloud oidc
5 Dec, 2025 sase cloud oidc
How to - Using OIDC in Clavister IdAuth Cloud with OneConnect
5 Dec, 2025 sase cloud oidc oneconnect core
5 Dec, 2025 sase cloud oidc oneconnect core
How to - Configure OIDC with Entra ID and NetWall
4 Jul, 2025 core oneconnect oidc
4 Jul, 2025 core oneconnect oidc
Requirements for JWT Token with OIDC Authentication in Clavister
4 Nov, 2024 oidc core authentication
4 Nov, 2024 oidc core authentication
Use Roles in IdAuth Cloud to limit user access to OneConnect
5 Dec, 2025 sase oneconnect core userauth oidc
5 Dec, 2025 sase oneconnect core userauth oidc