Gérer single sign-on
Gérer les organisations
NoteVous devez avoir une entreprise pour gérer plus d'une organisation.
Connect an organization
- Sign in to the Admin Console.
- Select your company from the Choose profile page, and then select SSO and SCIM.
- In the SSO connections table, select the Action icon and then Edit connection.
- Select Next to navigate to the section where connected organizations are listed.
- In the Organizations drop-down, select the organization to add to the connection.
- Select Next to confirm or change the default organization and team provisioning.
- Review the Connection Summary and select Update connection.
Remove an organization
- Sign in to the Admin Console.
- Select your company from the Choose profile page, and then select SSO and SCIM.
- In the SSO connections table, select the Action icon and then Edit connection.
- Select Next to navigate to the section where connected organizations are listed.
- In the Organizations drop-down, select Remove to remove the connection.
- Select Next to confirm or change the default organization and team provisioning.
- Review the Connection Summary and select Update connection.
Gérer les domaines
Remove a domain from an SSO connection
ImportantDocker supports multiple IdP configurations, where a single domain is used for multiple SSO identity providers. If you want to remove a domain from multiple SSO connections, you must remove it from each connection individually.
- Sign in to the Admin Console.
- Select your organization or company from the Choose profile page, and then select SSO and SCIM.
- In the SSO connections table, select the Action icon and then Edit connection.
- Select Next to navigate to the section where the connected domains are listed.
- In the Domain drop-down, select the x icon next to the domain that you want to remove.
- Select Next to confirm or change the connected organization(s).
- Select Next to confirm or change the default organization and team provisioning selections.
- Review the Connection Summary and select Update connection.
NoteIf you want to re-add the domain, a new TXT record value is assigned. You must then complete the verification steps with the new TXT record value.
ImportantLa gestion des organisations est en cours de transfert vers la console d'administration.
Gérez les membres, les équipes, les paramètres et les journaux d'activité dans la console d'administration Docker. L'accès à ces fonctionnalités dans Docker Hub prendra bientôt fin. Explorez la console d'administration.
Remove a domain from an SSO connection
ImportantDocker supports multiple IdP configurations, where a single domain is used for multiple SSO identity providers. If you want to remove a domain from multiple SSO connections, you must remove it from each connection individually.
- Sign in to Docker Hub.
- Navigate to the SSO settings page for your organization. Select My Hub, your organization, Settings, and then Security.
- In the SSO connections table, select the Action icon and then Edit connection.
- Select Next to navigate to the section where the connected domains are listed.
- In the Domain drop-down, select the x icon next to the domain that you want to remove.
- Select Next to confirm or change the connected organization(s).
- Select Next to confirm or change the default organization and team provisioning selections.
- Review the Connection Summary and select Update connection.
NoteIf you want to re-add the domain, a new TXT record value is assigned. You must then complete the verification steps with the new TXT record value.
Gérer les connexions SSO
Edit a connection
- Sign in to the Admin Console.
- Select your organization or company from the Choose profile page, and then select SSO and SCIM. Note that when an organization is part of a company, you must select the company and configure SSO for that organization at the company level. Each organization can have its own SSO configuration and domain, but it must be configured at the company level.
- In the SSO connections table, select the Action icon.
- Select Edit connection.
- Follow the on-screen instructions to edit the connection.
Delete a connection
- Sign in to the Admin Console.
- Select your organization or company from the Choose profile page, and then select SSO and SCIM. Note that when an organization is part of a company, you must select the company and configure SSO for that organization at the company level. Each organization can have its own SSO configuration and domain, but it must be configured at the company level.
- In the SSO connections table, select the Action icon.
- Select Delete connection.
- Follow the on-screen instructions to delete a connection.
Deleting SSO
When you disable SSO, you can delete the connection to remove the configuration settings and the added domains. Once you delete this connection, it can't be undone. If an SSO connection is deleted, Docker users must authenticate with their Docker ID and password.
ImportantLa gestion des organisations est en cours de transfert vers la console d'administration.
Gérez les membres, les équipes, les paramètres et les journaux d'activité dans la console d'administration Docker. L'accès à ces fonctionnalités dans Docker Hub prendra bientôt fin. Explorez la console d'administration.
Edit a connection
- Sign in to Docker Hub.
- Navigate to the SSO settings page for your organization. Select My Hub, your organization, Settings, and then Security.
- In the SSO connections table, select the Action icon.
- Select Edit connection.
- Follow the on-screen instructions to edit the connection.
Delete a connection
- Sign in to Docker Hub.
- Navigate to the SSO settings page for your organization. Select My Hub, your organization, Settings, and then Security.
- In the SSO connections table, select the Action icon.
- Select Delete connection.
- Follow the on-screen instructions to delete a connection.
Deleting SSO
When you disable SSO, you can delete the connection to remove the configuration settings and the added domains. Once you delete this connection, it can't be undone. If an SSO connection is deleted, Docker users must authenticate with their Docker ID and password.
Gérer les utilisateurs
ImportantSSO a le Provisioning Just-In-Time (JIT) activé par défaut à moins que vous ne l'ayez désactivé. Cela signifie que vos utilisateurs sont auto-provisionnés à votre organisation.
Vous pouvez changer ceci sur une base par app. Pour empêcher l'auto-provisioning d'utilisateurs, vous pouvez créer un groupe de sécurité dans votre IdP et configurer l'app SSO pour authentifier et autoriser seulement les utilisateurs qui sont dans le groupe de sécurité. Suivez les instructions fournies par votre IdP :
Alternativement, voir le guide Aperçu du Provisioning.
Ajouter des utilisateurs invités quand SSO est activé
Pour ajouter un invité qui n'est pas vérifié via votre IdP :
- Connectez-vous à la Console Admin.
- Sélectionnez votre organisation ou entreprise depuis la page Choisir le profil, puis sélectionnez Membres.
- Sélectionnez Inviter.
- Suivez les instructions à l'écran pour inviter l'utilisateur.
Retirer des utilisateurs de l'entreprise SSO
Pour retirer un utilisateur :
- Connectez-vous à la Console Admin.
- Sélectionnez votre organisation ou entreprise depuis la page Choisir le profil, puis sélectionnez Membres.
- Sélectionnez l'icône d'action à côté du nom d'un utilisateur, puis sélectionnez Retirer membre, si vous êtes une organisation, ou Retirer utilisateur, si vous êtes une entreprise.
- Suivez les instructions à l'écran pour retirer l'utilisateur.
Gérer le provisioning
Les utilisateurs sont provisionnés avec le provisioning Just-in-Time (JIT) par défaut. Si vous activez SCIM, vous pouvez désactiver JIT. Pour plus d'informations, voir le guide Aperçu du Provisioning.