If you select Workspace ONE UEM as one of the services to integrate with your third-party identity provider through Omnissa Identity Service, you must configure certain settings in Workspace ONE UEM.
Configure Authentication Settings
-
In the Omnissa Connect console, click Launch on the UEM card.
-
In the Workspace ONE UEM console, navigate to All Settings > Devices & Users > General > Enrollment.
-
Update the settings in the Authentication tab.
-
For Current Setting, select Override.
-
For Authentication Mode(s), verify that Directory is selected.
-
Click Save.
-
Enable the Password Grant setting (Password Grant Flows only)
If you use the Workspace ONE UEM username and password-based flows listed in Support for Certain Workspace ONE UEM Username and Password-based Flows, you must:
- Enable the Password Grant setting on the Workspace ONE UEM Directory Services page to grant permission to use the legacy Password Grant protocol.
- Select OpenID Connect as the authentication protocol in Omnissa Identity Service for the integration with your identity provider.
- (Okta integration) Create an OIDC app of type Native Application in Okta instead of Web Application and select the Resource Owner Password option for Grant type while creating the app.
When these requirements are met, the flows are supported for Omnissa Identity Service-provisioned users. Otherwise, the flows are supported for Basic users only.
Note: Password Grant flows are not supported when Google Workspace is configured as the identity provider because it does not support OIDC.
To enable the Password Grant setting:
-
In the Workspace ONE UEM console, navigate to All Settings > System > Enterprise Integration > Directory Services.
-
Select the Advanced tab.
-
Enable the Password Grant setting.

-
Click Save.
Manage Email Notifications for Users Provisioned to Workspace ONE UEM
You can configure whether end users receive an email notification when their accounts are provisioned in Workspace ONE UEM through Omnissa Identity Service. By default, a user activation email is sent upon provisioning. You can turn off email notifications or customize the email.
-
In the Workspace ONE UEM console, navigate to All Settings > System > Enterprise Integration > Directory Services.
-
Select the Advanced tab.
-
Expand the Notification section and make your selections.

-
Click Save.
See Workspace ONE UEM Directory Services Configuration for more information.
Questa pagina è stata utile?