文档

​
​

Development

User Acquisition

Monetization

工业

Self-Hosted Deployment

Amazon Web Services

Microsoft Azure

On premises

vpctl

Self-Hosted Deployment

此页面不支持所选语言。
​
​
Self-Hosted Deployment
  • Overview
  • Amazon Web Services
  • Microsoft Azure
  • On premises
  • Administration
    • Access the Keycloak admin console
    • Complete initial solution onboarding
    • Single sign-on
      • Integrate with the identity service provider
      • Configure the user experience for SSO
      • Rotate the client secret for the SSO application
    • Organizations and projects
    • Users and service accounts
    • Groups
    • Licensing
    • upc-cli tool
    • Custom branding
  • Security
  • vpctl
  1. Self-Hosted Deployment (previously called Unity Virtual Private Cloud)
  2. Administration
  3. Single sign-on

Rotate the client secret of the SSO application

Minimize the risk of unauthorized access or misuse of secrets
阅读时间1 分钟
最后更新于 1 个月前

重要
To enable single sign-on (SSO) with Self-Hosted Deployment, the recommended practice is to establish a procedure to rotate the client secret of the application that you have created in the enterprise identity provider (IdP). For Microsoft Entra ID, the maximum secret lifetime is two years, so you must handle its expiration anyway.
To rotate the client secret, complete these steps:
  1. In the enterprise IdP, add a new secret to the client.
  2. In Keycloak, replace the secret in the IdP configuration, and then verify that SSO works.
  3. In the enterprise IdP, delete the previous client secret.
注意
This secret isn't stored in the solution key vault.

Next steps

Configure the user experience

Copyright © 2026 Unity Technologies
法律信息隐私政策CookiesDocumentation Terms of Use请勿出售或分享我的个人信息您的隐私选择(Cookie 设置)

“Unity”、Unity 徽标及其他 Unity 商标是 Unity Technologies 或其附属公司在美国和其他地方的商标或注册商标(此处查看更多信息)。其他名称或品牌是其各自所有者的商标。

为方便起见,一些页面是机器翻译的,可能包含不准确的内容。如有信息不一致的情况,以英文版本为准。

  • 在本页上
    • Next steps


报告此页面的问题