From a73fae04aa2c49f555ccba37003b2b18533a70e0 Mon Sep 17 00:00:00 2001 From: Jascha <38194372+lollilol@users.noreply.github.com> Date: Tue, 28 Apr 2026 17:49:03 +0200 Subject: [PATCH] Updated Enabling SSO support using OpenId Connect (markdown) --- Enabling-SSO-support-using-OpenId-Connect.md | 2 ++ 1 file changed, 2 insertions(+) diff --git a/Enabling-SSO-support-using-OpenId-Connect.md b/Enabling-SSO-support-using-OpenId-Connect.md index f0745a7..714c150 100644 --- a/Enabling-SSO-support-using-OpenId-Connect.md +++ b/Enabling-SSO-support-using-OpenId-Connect.md @@ -31,6 +31,8 @@ The following configurations are available The callback URL is [automatically generated](https://github.com/dani-garcia/vaultwarden/blob/1e1f9957cd037fad87e5cd33245720f865942016/src/config.rs#L1333) from the `DOMAIN`. If you set `DOMAIN=https://vaultwarden.example.tld` your callback URL will be `https://vaultwarden.example.tld/identity/connect/oidc-signin`. +To properly populate the name for accounts you need to configure your IdP to provide it as claim `preferred_username` + If you are using a private certificate authority or self signed certificates on your SSO authority, you need to add your root certificate to `/etc/ssl/certs` or point the `SSL_CERT_DIR` or `SSL_CERT_FILE` environment variables to it. ## Account and Email handling