How to connect Camunda8 SAAS login page in 8.10 alpha version to Microsoft IDP for SSO login

Hi, In Camunda7 SSO we have implement an Azure app registration and service principal for the users and roles. And then we extend the ContainerBasedAuthenticationProvider class to integrate with external IDP.

How does it work with Camunda8 SAAS for user login. Do we have to share the app registration and roles details to Camunda team via ticket? So the custom IDP roles will be mapped to Camunda organization roles?

Is there a possibility to give access to cluster alone and not to org level i.e. Camunda console and Admin even as a read access?


Another doubt I have is about process app access to Camunda8 SAAS for orchestration. Can that also use IDP or it has to use the Camunda client id and secret directly?

Your questions touch on Camunda 8 SaaS SSO/IdP setup, organization role mapping, cluster-level access control, and client authentication for process apps. I found the following relevant resources:

Does this help? If not, can anyone from the community jump in? :waving_hand:


:light_bulb: Hints: Use the Ask AI feature in Camunda’s documentation to chat with AI and get fast help. Report bugs and features in Camuda’s GitHub issue tracker. Trust the process. :robot: