Configure Zitadel Single Sign-On using OpenID Connect
Create New Application
Applications
click New
.Configure Application
Set Application Type
Type of application
choose Web
.Set Authentication Method
Authentication Method
choose Code
.Leave Redirect URIs Blank
Redirect URIs
blank for now.ClientSecret
and ClientId
. Make sure to save these somewhere secure - you won’t be able to see the Client Secret again.Configure Token Settings
Token settings
then change Auth Token Type
to JWT
and check the User Info inside ID Token
box finally hit Save
.Note Endpoints
URLs
and make note of:Authorization Endpoint
Token Endpoint
OAuth2/OIDC
.
Authorization Endpoint
from your Zitadel application.Token Endpoint
from your Zitadel application.openid profile email
.
Redirect Settings
in your Zitadel application. Add the URL you copied to the Redirect URIs
, then hit the +
button and finally Save
. Your configuration should now be complete. You’ll now need to add an external user] to Pangolin, or if you have “Auto Provision Users” enabled, you can now log in using Zitadel SSO.