ArcGIS Online

Using the con terra Technologies Identity Service, smart.finder can delegate the authentication of users to ArcGIS Online. This means that a user can log in to smart.finder with an ArcGIS Online account. Groups and roles of the ArcGIS Online user are translated into roles for smart.finder.

Connecting to ArcGIS Online creates the following possibilities:

  • Assigning roles for using the Job Manager.

  • Assignment of roles for the use of the Solr Admin Client.

  • Assignment of roles for the user-sensitive restriction of the search index.

Establishing a connection between smart.finder and ArcGIS Online

The connection of smart.finder with ArcGIS Online is done in two steps.

Step 1: Install and configure Identity Service.

In this step you install and configure the Identity Service as a separate web application. Follow these steps from the Identity Service documentation:

  1. Install the Identity Service.

  2. Connect the Identity Service to ArcGIS Online.

  3. Configure map.apps as a trusted service in the Identity Service.

  4. Configure services of your organization in ArcGIS Online as trusted services in Identity Service.

Step 2: Configure smart.finder

To enable login delegation, set the following parameters in global configuration:

example-configuration
security.mode=IDENTITY
security.login.base=https://www.example.com/identity
esri.api.arcgisPortalUrl=https://myorg.maps.arcgis.com
security.mode

The IDENTITY value specifies that authentication should be delegated through the Identity Service.

security.login.base

Base URL of the Identity Service.

esri.api.arcgisPortalUrl

URL to the used ArcGIS Online organization. The value must match the configuration for security.oauth.provider.arcgis.url in the Identity Service.