Global Redirector
The Global OIDC Redirect Relay (Global Redirector) offers the capability to establish a unified OpenID Connect application within an Identity Provider (IdP). This application can be used across multiple NiCE KM sites to streamline the authentication process and enhance efficiency.
How it works
The Global OIDC Redirect Relay introduces an intelligent routing layer that sits between an Identity Provider and your NiCE KM sites. When users authenticate through the Identity Provider, the redirect relay automatically routes them back to their originating NiCE KM site with proper authorization.
Authentication flow:
-
- User accesses protected NiCE KM site resource
- Redirected to customer's Identity Provider authorization server
- After successful authentication, Global Redirect Relay processes the callback
- Automatic routing to originating NiCE KM site with valid authorization
- User gains access to protected resources completing the OpenID Connect flow
Key benefits
- Zero-touch provisioning: Automates service provider configuration without requiring client ID/secret setup requests.
- Rapid deployment: Reduces implementation time from 2-4 days to near-instant activation.
- Seamless multi-site support: Single tenant ID connects unlimited NiCE KM sites under your organization.
Multi-site support
Each site receives its own service provider configuration while sharing the same redirect uri. This enables organizations to:
- Deploy multiple NiCE KM sites for different departments or regions.
- Maintain separate content while using unified authentication.
- Simplify user management across all NiCE KM sites.
- Reduce administrative overhead through centralized authentication.
Enterprise features
- Multi-region support: Supports US, CA, AU, and EU deployments.
- Automated credential rotation: Credential updates are handled by NiCE KM.
- Comprehensive monitoring: Provides real-time logging and alerting for authentication events.
- High availability: Redundant infrastructure with automatic failover maintains reliability.
Setup based on use case
You can select the appropriate configuration for your organization based on the IdP you use and your requirements:
- Standard OIDC Provider: For a single site, we recommend the standard OpenID Connect setup. This provides a direct connection with client credentials, and includes standard setups for IdPs like Okta and Azure.
- Global Redirector (NiCE CXone IdP): Streamlined setup for NiCE customers without individual client credentials.
Contact us and we will ensure your NiCE CXone tenant is properly configured and provide guidance on how to deploy this solution across your organization.
- Global Redirector (non-NiCE IdP): Streamlined setup for multiple NiCE KM sites with individual client credentials. This includes setups for IdPs like Okta and Azure.

