Configuring OIDC Single Sign-On (SSO)

This guide will help you configure OpenID Connect (OIDC) Single Sign-On in Zoom.

Requirements for configuring OIDC Single Sign-On (SSO)

Table of Contents

How to configure OIDC Single Sign-On (SSO)

  1. Obtain OIDC Configuration Information

    You can configure OIDC endpoints using one of the following methods:

  2. Configure Client Credentials

  3. Configure OAuth Scopes

    Select the required permission scopes in the Scopes field. Default values are openid and email.
  4. Register Callback URLs with Your Identity Provider

    Copy the following URLs and add them to your Identity Provider configuration:
  5. Configure User Provisioning

    Select the user creation method from the Provision User dropdown.
     
    OptionDescription
    At Sign-In (Default)
    User accounts are automatically created when users first sign in via SSO
    Pre-provision
    User accounts must be created in Zoom before SSO sign-in
  6. Save Configuration

    After completing all the configurations, click the Save button at the bottom of the page.

     

How to switch between SSO methods

From SAML to OIDC

If you're currently using SAML authentication, you can switch to OIDC by clicking the Configure SSO via OIDC button.

Note: After switching to OIDC/SAML, the original SAML/OIDC configuration will be retained, and you can switch back at any time.

From OIDC to SAML

To revert back to SAML authentication, click the Configure SSO via SAML button. All your previous SAML configuration settings, including SSO mapping, will be automatically restored.

 

Note: The switch will only take effect after you save your changes.