Appian Community and Appian Academy are being upgraded. From July 24–August 3, the Appian Community will be in read-only mode. During this time, the site will be read-only and user registration will be disabled. We apologize for any inconvenience this may cause, but a more secure, stable, and performant Community experience is coming soon!
The new Appian Community launches August 3, followed by Appian Academy on August 7. During the migration, Appian Community Edition, Appian Academy, Documentation, Certifications, Instructor-led Customer Training, Partner Sales Training & Accreditation, and Forum (for Appian Partners and Customers only) will remain available.
Hi everyone,
I'm looking for some guidance on whether the following architecture is supported.
We are planning to build an Appian Portal (not an Appian Site). The users are corporate employees who authenticate through our company's Microsoft Entra ID SAML SSO.
Our goal is for users to access the Portal, be redirected to our corporate SSO for authentication, and then return to the Portal once they have successfully signed in.
These users will not be registered as Appian users and will not sign in to Appian itself. We only need to identify the authenticated user (for example, username or email address) within the Portal so we can record who initiated a request. All interactions with Appian processes will be performed by a service account.
My questions are:
Is this architecture supported with Appian Portals?
Can an Appian Portal initiate authentication through Microsoft Entra ID (SAML)?
After successful authentication, is the authenticated user's identity (username, email, etc.) available within the Portal interface? If so, how can it be accessed?
Any guidance or examples would be greatly appreciated.
Thank you!
Discussion posts and replies are publicly visible
Portals are built for users without credentials, so there is no login and no way to identify the user inside a portal.May i know why you wanna do that and what's your use case?
Thanks for your reply.
My goal is not to use Appian's built-in authentication. What I want is to delegate authentication to our own Identity Provider (SSO) and redirect users there instead of asking them to log in with Appian credentials.
The idea is that users authenticate through our existing SSO solution, and then access the portal without ever seeing an Appian login screen.
Is this architecture supported? Specifically, is it possible to integrate a custom SSO solution without relying on Appian's out-of-the-box authentication integrations?
No