<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <title>Open ID Connect providers in virtual instance scope</title>
  <link rel="self" href="https://liferay.dev/ar/c/message_boards/find_thread?p_l_id=119785294&amp;threadId=118674379" />
  <subtitle>Open ID Connect providers in virtual instance scope</subtitle>
  <id>https://liferay.dev/ar/c/message_boards/find_thread?p_l_id=119785294&amp;threadId=118674379</id>
  <updated>2026-04-28T05:46:29Z</updated>
  <dc:date>2026-04-28T05:46:29Z</dc:date>
  <entry>
    <title>RE: Open ID Connect providers in virtual instance scope</title>
    <link rel="alternate" href="https://liferay.dev/ar/c/message_boards/find_message?p_l_id=119785294&amp;messageId=118697589" />
    <author>
      <name>Carlos Sierra</name>
    </author>
    <id>https://liferay.dev/ar/c/message_boards/find_message?p_l_id=119785294&amp;messageId=118697589</id>
    <updated>2020-03-09T15:03:12Z</updated>
    <published>2020-03-09T15:03:12Z</published>
    <summary type="html">hi Aritz, &lt;br /&gt;we are currently reviewing the configuration options for all of our more relevant SSO connectors and OAuth2. So this will probably be included soon. &lt;br /&gt;Thanks. &lt;br /&gt;Carlos.</summary>
    <dc:creator>Carlos Sierra</dc:creator>
    <dc:date>2020-03-09T15:03:12Z</dc:date>
  </entry>
  <entry>
    <title>Open ID Connect providers in virtual instance scope</title>
    <link rel="alternate" href="https://liferay.dev/ar/c/message_boards/find_message?p_l_id=119785294&amp;messageId=118674378" />
    <author>
      <name>Aritz Galdos</name>
    </author>
    <id>https://liferay.dev/ar/c/message_boards/find_message?p_l_id=119785294&amp;messageId=118674378</id>
    <updated>2020-03-06T09:32:52Z</updated>
    <published>2020-03-06T09:32:52Z</published>
    <summary type="html">Dear Liferayers&lt;br /&gt;My current Liferay project involves several virtual instances and I have just realized that Open ID Connect providers are defined at System settings scope and these providers are shared among all the virtual instances (if OIDC enabled).&lt;br /&gt;Does it make any sense? I agree that if each has its own OIDC server properly configured for its own domain name and redirects, cross-logins will not happen among the instances but IMHO , the users of a given instance should not even see a reference o other OIDC services apart from the one related to my instance.&lt;br /&gt;What&amp;#39;s you opinion?&lt;br /&gt;Best Regards&lt;br /&gt;Meanwhile I think I will have to hook the login portlet to make it just show the OIDC services belonging to each instance (hardcoding this somewhere)</summary>
    <dc:creator>Aritz Galdos</dc:creator>
    <dc:date>2020-03-06T09:32:52Z</dc:date>
  </entry>
</feed>
