GenAuth DocsDocuments
Concepts
User Guide
Development Integration
Metadata
Development Integration
Multi-tenant (beta)
Console Documentation
Multi-tenant Console
Tenant Console
Saas Application Demo
Concepts
User Guide
Development Integration
Metadata
Development Integration
Multi-tenant (beta)
Console Documentation
Multi-tenant Console
Tenant Console
Saas Application Demo
Old version
User Guide
  • Quick Start

  • Authentication

  • Access Control

  • Authorization

  • Adaptive MFA

  • User Account Management

  • User Directory Management

  • Applications

  • Become a Federation Authentication Identity Provider

  • Connect External Identity Providers (IdP)

  • WeChat Ecosystem Full Scenario Capabilities

  • Migrate Users to GenAuth

  • Security Settings

  • Branding

  • Automation

  • Audit Logs

  • Setting

  • FAQ

¶ Enterprise Identity Source

Update time: 2025-04-11 11:21:15
Edit

For information about the GenAuth user pool version that supports the "Enterprise Identity Source" feature benefit, please check the Official Website "Pricing" page (opens new window). If your version does not support this benefit and you want to try it, you can activate the trial period. For an introduction to the trial period and how to activate it, please check Trial Period.

Enterprise Identity Source Login refers to the process of users using the enterprise's identity authentication information to authenticate and log in to internal company applications or third-party applications. In the GenAuth console, enterprise identity sources include two categories: office applications (such as Lark, WeChat for Enterprise, DingTalk) and standard protocol applications (such as OIDC, SAML, CAS and other standard protocols). You can configure the enterprise identity source connection to use a third-party identity source to log in to the GenAuth application and [import organizations and users from third-party identity sources](/guides/org/create-or-import-org/#Import organizations).

¶ Enterprise identity source login list

The following is a complete list of enterprise logins currently supported by the platform and related usage documents:

Enterprise login methodUsage scenarioUsage document
Enterprise WeChat self-built application scan codePC website/Enterprise WeChat browserUsage document
Enterprise WeChat self-built application scan code (development mode)PC websiteUsage document
Enterprise WeChat service provider application scan codePC websiteUsage document
Enterprise WeChat mobile terminalMobile APPUse Documentation
DingTalk H5 Micro Application (Enterprise Internal Development)PC WebsiteUse Documentation
DingTalk Mobile TerminalMobile APPUse Documentation
Feishu Enterprise Self-built ApplicationPC Website/Feishu Browser/Mobile Terminal/Mobile TerminalUse Documentation
Feishu App Store ApplicationPC Website/Feishu Browser/Mobile Terminal/Mobile TerminalUse documentation
Windows Active DirectoryPC websiteUse documentation
Azure Active DirectoryPC websiteUse documentation
OIDCPC websiteUse documentation
OAuth 2.0PC websiteUse documentation
LDAPPC websiteUse Documentation
SAMLPC WebsiteUse Documentation
CASPC WebsiteUse Documentation
WelinkPC WebsiteUse Documentation

¶ Enterprise login association method

Use the "Account association of identity source connection" function to allow your users to log in directly to existing accounts when logging in using the enterprise identity source you configured.

When "Account Identity Association" is not enabled, a new user is created in the user pool by default when a user logs in through an identity source for the first time. After enabling "Account Identity Association", you can select the "Identity Source Account Association Method" for the user, allowing the user to directly bind and log in to an existing account through "Field Matching" or "Query Binding".

The following are the ways that the enterprise identity sources currently supported by the platform support account association:

Social login methodUsage scenarioQuery bindingBinding methodField matchingMatching rules
Enterprise WeChat self-built application scan codePC website----✅Mobile phone, email
Enterprise WeChat self-built application scan code (developed on behalf of others)PC website----✅Mobile phone, email
Enterprise WeChat service provider scan codePC website--------
Enterprise WeChat mobile terminalMobile APP----✅Mobile phone, email
Enterprise WeChat self-built application scan codeEnterprise WeChat browser----✅Mobile phone, email
DingTalk H5 micro application (enterprise internal development)PC website----✅Mobile phone, email
Feishu enterprise self-built applicationPC website/Feishu browser/mobile terminal----✅Mobile phone, email
Feishu enterprise self-built applicationMobile APP----✅Mobile phone, email
Feishu App Store applicationPC website/Feishu browser/mobile terminal----✅Mobile phone, email
Feishu App Store applicationMobile APP----✅Mobile phone, email
Windows Active DirectoryPC website----✅Mobile phone number, email
Azure Active DirectoryPC website----✅Mobile phone number, email
OIDCPC website----✅Mobile phone number, email
OAuth 2.0PC website----✅Mobile phone number, email, user name
LDAPPC website----✅Mobile phone number, email
SAMLPC website----✅Mobile phone number, email
CASPC website----✅Mobile number, email
WelinkPC website----✅Email
Zhiyuan OAPC website----✅Username
  • Enterprise identity source login list
  • Enterprise login association method

User identity management

Integrated third-party login
Customized authentication process

Enterprise internal management

Single sign-on
Multi-factor authentication
Permission management

Developer

Development Documentation
GitHub (opens new window)

Company

official@genauth.ai
16th Floor, Building B, Beichen Century Center, Chaoyang District, Beijing (Total)
Room 406, 4th Floor, Block B, No. 200, Tianfu Fifth Street, High-tech Zone, Chengdu (Branch)

© Beijing Steamory Technology Co., Ltd.