Create your C1 tenant and configure single sign-on (SSO) with your identity provider — Okta, Google, Microsoft Entra ID, OneLogin, JumpCloud, PingOne, or any OIDC provider.
In the Domain field, enter the domain you want to use for your C1 instance.For example, if you work at Acme Co., enter acmeco to create an acmeco.conductor.one domain.
3
In the Display name field, enter the name of your company.
4
In the Invite code field, paste in the invite code you received from C1. The code is case-sensitive.
In this step, you’ll configure the SSO settings for the C1 app in Okta. To complete this step you’ll move back and forth between your Okta tab and the C1 registration tab.
1
In Okta, click Applications > Applications > C1 to return to the new C1 application’s details screen.
2
Copy your Okta domain (such as acmeco.okta.com) from the browser’s address bar and paste your Okta domain into the Okta domain field in C1.
3
In Okta, click the Sign On tab. Copy the C1 app’s client ID by clicking the Copy to clipboard icon.
4
In C1, paste the client ID into the Client ID field.
5
In Okta, copy the C1 app’s client secret by clicking the Copy to clipboard icon, then paste the client secret into the Client secret field in C1.
6
In C1, click Sign up with Okta.
Okta will guide you through the SSO sign-in process and redirect you to the C1 dashboard.
Step 2: Configure the SSO settings on the OneLogin C1 app
In this step, you’ll configure the SSO settings for the C1 app in OneLogin. To complete this step you’ll move back and forth between your OneLogin tab and the C1 registration tab.
1
In OneLogin, copy your OneLogin domain (such as acmeco.onelogin.com) from the browser’s address bar.
2
In C1, paste your OneLogin domain into the OneLogin domain field.
3
In OneLogin, on the SSO tab, copy the C1 app’s Client ID.
4
In C1, paste the Client ID into the Client ID field.
5
In OneLogin, copy the C1 app’s Client Secret.
6
In C1, paste the Client Secret into the Client secret field.
7
In C1, click Sign up with OneLogin. OneLogin will now guide you through the SSO sign-in process and redirect you to the C1 dashboard.
In a new browser tab, navigate to the JumpCloud Admin Portal and click User authentication > SSO.
2
Click + Add New Application.
3
Scroll to the bottom of the window and click Custom OIDC App.
4
Enter the following information in the specified fields:
Display Label: C1
(Optional) Logo:
Right click to copy.
5
Click Save.
6
On the SSO tab, fill out the specified fields as follows:
Redirect URIs: Enter https://accounts.conductor.one/auth/callback
Client Authentication Type: Client Secret POST
Login URL: https://YOUR_DOMAIN.conductor.one/login?sso_operation=initiate_login (use the C1 domain you chose in Step 1)
7
In the User Attribute Mapping section, enter email in the Service Provider Attribute Name field and select email in the JumpCloud Attribute Name field, then click Add Attribute.
8
On the User Groups tab, select one or more groups to assign access to C1.
9
Click Activate. Leave the Application Saved popup that displays the Client ID and the Client Secret fields open. You’ll use these values in the next step.
Step 2: Configure OIDC settings on the JumpCloud C1 app
In this step, you’ll configure the SSO settings for the C1 app in OneLogin. To complete this step you’ll move back and forth between your JumpCloud tab and the C1 registration tab.
1
In JumpCloud, copy the C1 app’s Client ID from the Application Saved popup.
2
In C1, paste the Client ID into the Client ID field.
3
In JumpCloud, copy the C1 app’s client secret and paste it into the Client secret field in C1.
4
In C1, click Sign up with JumpCloud. JumpCloud will now guide you through the SSO sign-in process and redirect you to the C1 dashboard.
When prompted to authenticate with Microsoft, select your corporate account.
2
Review the permissions requested by C1. These permissions are needed to establish the SSO link between Microsoft and C1.
If you have the correct permission level in Microsoft, check the box to Consent on behalf of your organization. This enables the requested C1 permissions for all users in your organization.
If you do not have the permissions needed to check the box, before other users attempt to sign into C1 using SSO, direct your Microsoft administrator to manage permissions for the C1 application in by navigating to Enterprise applications > C1 SSO > Permissions and clicking Grant admin consent for ….
3
Click Accept.
Microsoft will now guide you through the SSO sign-in process and redirect you to the C1 dashboard.
In a new browser tab, log into your PingOne Administration console and navigate to Applications > Applications.
2
Click the + (plus sign) to create a new application.
3
Enter the following information in the specified fields:
Application name: C1
(Optional) Logo:
Right click to copy.
4
In the Application Type area of the page, select OIDC Web App.
5
Click Save.
6
On the Configuration tab, click Edit and fill out the specified fields as follows:
Token Endpoint Authentication Method: Client Secret Post
Redirect URI’s: Enter https://accounts.conductor.one/auth/callback
Initiate Login URI: Enter https://your_domain.conductor.one/login
7
Click Save.
8
At the top of the page, click the toggle to enable the new application.
9
Return to the Configuration tab and carefully copy and save the new app’s Client ID, Client secret, and Environment ID. You’ll use these in the Step 2.
Step 1: Create an OIDC app in your identity provider
1
In a new browser tab, log into your identity provider and create a new OIDC application.
Configure the redirect URI to use https://accounts.conductor.one/auth/callback.
Ensure the authorization code flow is enabled.
2
Gather OIDC credentials to pass to C1:
Issuer URL (the base URL of your OIDC provider)
Client ID
Client secret
Optional: Additional scopes beyond openid, profile, and email
3
Back in the C1 setup tab, paste the Issuer URL, Client ID, Client secret, and any OIDC scopes into the relevant fields in the form at the right of the page.
4
Click Sign up with OIDC. Your identity provider will now guide you through the SSO sign-in process and redirect you to the C1 dashboard.
Your C1 tenant is created and you are logged in!See our other getting started guides to move through the product and get on the fast track to modern governance.