Skip to main content
NiCE KnowledgeKnowledge
NiCE Knowledge Success Center

Global Redirector

The Global OIDC Redirect Relay (Global Redirector) offers the capability to establish a unified OpenID Connect application within an Identity Provider (IdP). This application can be used across multiple NiCE KM sites to streamline the authentication process and enhance efficiency.

How it works

The Global OIDC Redirect Relay introduces an intelligent routing layer that sits between an Identity Provider and your NiCE KM sites. When users authenticate through the Identity Provider, the redirect relay automatically routes them back to their originating NiCE KM site with proper authorization.

Authentication flow:

  1. User accesses protected NiCE KM site resource
  2. Redirected to customer's Identity Provider authorization server
  3. After successful authentication, Global Redirect Relay processes the callback
  4. Automatic routing to originating NiCE KM site with valid authorization
  5. User gains access to protected resources completing the OpenID Connect flow

Key benefits

  • Zero-touch provisioning: Automates service provider configuration without requiring client ID/secret setup requests.
  • Rapid deployment: Reduces implementation time from 2-4 days to near-instant activation.
  • Seamless multi-site support: A single IdP app connects unlimited NiCE KM sites under your organization.

Multi-site support

Each site receives its own service provider configuration while sharing the same redirect URI. This enables organizations to:

  • Deploy multiple NiCE KM sites for different departments or regions.
  • Maintain separate content while using unified authentication.
  • Simplify user management across all NiCE KM sites.
  • Reduce administrative overhead through centralized authentication.

Setup based on use case

You can select the appropriate configuration for your organization based on the IdP you use and your requirements:

  1. Standard OIDC Provider: For a single site, we recommend the standard OpenID Connect setup. This provides a direct connection with client credentials, and includes standard setups for IdPs like Okta and Azure.
  2. Global Redirector (NiCE CXone IdP): Streamlined setup for NiCE customers without individual client credentials. Use the Create or update CXone IdP button in Portal 2 to provision this for your site.
    Support: For use case #2, refer to this page: Global Redirector for NiCE CXone IdP
  3. Global Redirector (non-NiCE IdP): Streamlined setup for multiple NiCE KM sites with individual client credentials. This includes setups for IdPs like Okta and Azure.
  • Was this article helpful?