Identity provider trust (station layer)

The device registration process configures trust in the platform identity provider. No additional steps are required.

Trust in the application layer user identity provider should be configured as a part of cloud commands configuration. This list summarize what needs to be done to configure this trust using the Trust Manager:

  1. Provide the IP certificate or JWKS endpoint.
  2. Fix the token issuer (iss) claim.
  3. Possibly update the audience.
  4. Collect and provide a certificate or JWKS URL for the chosen identity provider.

    Provide a token issuer and application IP and change the audience value, if needed.

    You configure trust for each cloud application. You should provide the application ID received from Sentience during the application registration process.

ACTION: Configure Identity Provider Trust

Collect and provide the certificate or JWKS URL for the chosen application IP.

Provide the platform ID, which is equal to the Token issuer claim field. This should be unique for each application IP.