ドキュメント

​
​

Development

User Acquisition

Monetization

産業

Self-Hosted Deployment

Amazon Web Services

Microsoft Azure

On premises

vpctl

Self-Hosted Deployment

このページは選択した言語では使用できません。
​
​
Self-Hosted Deployment
  • Overview
  • Amazon Web Services
  • Microsoft Azure
  • On premises
  • Administration
    • Access the Keycloak admin console
    • Complete initial solution onboarding
    • Single sign-on
      • Integrate with the identity service provider
      • Configure the user experience for SSO
      • Rotate the client secret for the SSO application
    • Organizations and projects
    • Users and service accounts
    • Groups
    • Licensing
    • upc-cli tool
    • Custom branding
  • Security
  • vpctl
  1. Self-Hosted Deployment (previously called Unity Virtual Private Cloud)
  2. Administration

Single sign-on

Set up single sign-on with OpenID Connect for your private cloud
読み終わるまでの所要時間 1 分
最終更新 1ヶ月前

Overview

Streamline the management of users in Self-Hosted Deployment with single sign-on (SSO) and just-in-time (JIT) user provisioning.
Self-Hosted Deployment implements SSO through an enterprise identity provider (IdP) using the OpenID Connect (OIDC) protocol. You can use any OIDC-compliant IdP.

Just-in-time provisioning

Keycloak's JIT provisioning mechanism provides these automated features:
  • Creation of the user account on the first sign-in.
    You don't need to manually create users. This automated step reduces administrative overhead and enhances the user experience.
  • Population of user attributes.
    When setting up SSO, you set predefined mappers in Keycloak to automatically populate, on the first sign-in, user attributes from an external IdP or from Keycloak's user store.
The JIT user provisioning process occurs behind the scenes, with a seamless user experience:
  1. Self-Hosted Deployment redirects, through the OIDC protocol, the new user to their IdP, to sign in.
  2. The IdP returns the user details to Keycloak.
  3. Keycloak sends these details to Self-Hosted Deployment in the form of claims.
  4. Self-Hosted Deployment uses these claims to create the user account on the fly.

Setup

The setup procedure differs, depending on the IdP vendor. This section provides guidance for Microsoft, with Entra ID, and for Okta.
In Keycloak, the predefined unity realm stores all the settings and objects that are related to Virtual Private Cloud. When you open the Keycloak admin console, switch to the unity realm.
To set up SSO for Self-Hosted Deployment, complete these tasks:
1. Integrate with the identity service provider
2. Configure the user experience for SSO
To maintain security of the solution perform these tasks regularly:
1. Rotate the client secret of the SSO application

Copyright © 2026 Unity Technologies
法規事項プライバシーポリシークッキーDocumentation Terms of Use私の個人情報を販売または共有しないプライバシーに関する選択 (クッキー設定)

"Unity" の名称、Unity のロゴ、およびその他の Unity の商標は、米国およびその他の国における Unity Technologies またはその関係会社の商標または登録商標です (詳しくはこちら)。その他の名称またはブランドは該当する所有者の商標です。

一部のページは利便性向上のため機械翻訳を使用しており、内容に不正確な表現が含まれる場合があります。内容に齟齬または不一致が生じた場合は、英語版を正本とします。

  • このページ
    • Overview

      • Just-in-time provisioning

    • Setup


このページの問題を報告する