Retailer Setup in SSO-Enabled Accounts
Author:
Holger Lierse
Changed on:
11 June 2025
Overview
Creating new retailers within an SSO-enabled account involves specific considerations to ensure seamless integration and secure user management. This section provides guidelines on how to set up new retailers effectively post-SSO enablement.
Key points
- Active SSO: With SSO activated, the user as
`*_admin`
cannot access Fluent OMS via corporate IdP due to external IdP configurations.`RETAILER`
- User Role Management: Remove existing roles from users to restrict access appropriately.
`*_admin`
- User Creation: Create new users tailored for specific roles.
When setting up a new retailer in an SSO-enabled environment, follow these essential steps to ensure seamless operation and security:
- Initial Setup and User Role Assignment
- Initiate retailer creation through Fluent OMS using the account user.
- Managing User and access
`*_admin`
- Understand that the user, created initially as type
`*_admin`
, cannot access Fluent OMS via corporate IdP post-SSO activation.`RETAILER`
- Treat the automatically created user for the new retailer as transient and limit their access by removing any exisiting roles.
`*_admin`
- Understand that the
- User Creation
- Create a new user of type specifically for API activities like Postman. Ensure to apply the required roles & permissions for the newly created retailer.
`API`
- Create a new user of type specifically for OMS related activities. Ensure to apply the required roles & permissions for the newly created retailer. Note that this user must also be set up on the corporate IdP.
`RETAILER`
- Create a new user of type