<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>article Why Qlik doesn't support multiple interactive identity providers on a Qlik Cloud tenant in Official Support Articles</title>
    <link>https://community.qlik.com/t5/Official-Support-Articles/Why-Qlik-doesn-t-support-multiple-interactive-identity-providers/ta-p/2508017</link>
    <description>&lt;P&gt;&lt;STRONG&gt;&lt;FONT size="4" color="#339966"&gt;Content&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;LI-TOC indent="15" liststyle="none" maxheadinglevel="4"&gt;&lt;/LI-TOC&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Qlik Cloud is designed to support a single interactive Identity Provider (IdP) per tenant.&lt;/P&gt;
&lt;P&gt;This approach enhances security, governance, and operational control while simplifying authentication management. Organizations that require multiple identity sources can achieve this by using a federated IdP (such as Azure Entra, Auth0, Keycloak, or Okta) to consolidate authentication and seamlessly connect it to Qlik Cloud, as described by&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/47022"&gt;@Leigh_Kennedy&lt;/a&gt;&amp;nbsp;in&amp;nbsp;&lt;SPAN&gt;&lt;A href="https://community.qlik.com/t5/Official-Support-Articles/Using-Multiple-concurrent-Identity-Providers-with-Qlik-Cloud/ta-p/2518278" target="_blank" rel="noopener"&gt;Using Multiple concurrent Identity Providers with Qlik Cloud&lt;/A&gt;.&lt;/SPAN&gt;&lt;/P&gt;
&lt;H3&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Rationale&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H3&gt;
&lt;H4&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Understanding interactive IdPs in Qlik Cloud&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;P&gt;Qlik Cloud allows organizations to configure an interactive IdP to manage user authentication. Options include:&lt;/P&gt;
&lt;UL class="lia-list-style-type-circle"&gt;
&lt;LI&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Qlik Account&lt;/STRONG&gt;&lt;/FONT&gt; (default for new, non-government tenants).&lt;/LI&gt;
&lt;LI&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;A standards-compliant OIDC or SAML provider&lt;/STRONG&gt;&lt;/FONT&gt;, such as Azure Entra, Okta, Auth0, or Keycloak.&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Any unauthenticated user attempting to access the tenant is redirected to the configured interactive IdP for authentication, ensuring a streamlined and secure login experience.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H4&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Why Qlik Cloud only supports one interactive IdP&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;P&gt;Using a single interactive IdP is a best practice for identity management and ensures consistency, security, and simplified administration.&lt;/P&gt;
&lt;P&gt;Key reasons include:&lt;/P&gt;
&lt;UL data-spread="false"&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;User Identity Consistency&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; Qlik Cloud relies on a user's subject and email as unique identifiers. Managing a single interactive IdP helps prevent duplicate identities and ensures seamless user access, reducing risk of users gaining unauthorized access to sensitive data or permissions.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Streamlined Identity &amp;amp; Access Management&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; Since Qlik Cloud does not transform incoming claims beyond remapping keys, keeping authentication centralized prevents unintended variances in usernames, email formats, or group names. This improves security and reduces maintenance of licenses and entitlements.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Optimized Group Management&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; A single interactive IdP provides a consistent structure for groups, ensuring they align with an organization’s access policies. By managing group filtering in one place, organizations can maintain clear and structured permissions.&amp;nbsp;Managing groups across multiple IdPs can quickly become unmanageable, leading to inconsistencies in user access.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Simplified Access Control&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; Groups in Qlik Cloud are referenced by name, making it more efficient to manage access through a single federated IdP rather than multiple sources.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Efficient Token Management&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; A unified IdP helps maintain consistency in authentication tokens, reducing administrative overhead and ensuring a smooth user experience.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Enhanced Security &amp;amp; Auditability&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; By centralizing authentication through a single IdP, organizations can apply security controls, enforce device policies, and monitor user access through audit logs.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;SPAN&gt;A &lt;/SPAN&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;federated IdP&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt; ensures that organizations retain full control over authentication policies, while providing a seamless experience for users accessing Qlik Cloud.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H4&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Why Federate Identity In-House?&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;P&gt;&lt;SPAN&gt;Many organizations choose to use a &lt;/SPAN&gt;federated identity provider&lt;SPAN&gt; to streamline identity management, enhance security, and improve user experience across multiple applications. Benefits include:&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL data-spread="false"&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Centralized User Lifecycle Management&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; Users from different sources can be managed in a single system, reducing duplication and inconsistencies.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Improved Security Policies&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; Organizations can enforce &lt;/SPAN&gt;multi-factor authentication (MFA), conditional access policies, and device trust settings&lt;SPAN&gt; at the IdP level.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Single Sign-On (SSO) Across Applications&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; Users authenticate once and gain seamless access to multiple platforms, including Qlik Cloud.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Comprehensive Logging &amp;amp; Compliance&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; A federated IdP provides consolidated audit trails and governance controls for user authentication.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;SPAN&gt;By implementing a &lt;/SPAN&gt;federated identity provider&lt;SPAN&gt;, organizations can maintain flexibility in their authentication strategy while ensuring compatibility with Qlik Cloud.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Solution: Federate IdPs with an enterprise-grade IdP&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H3&gt;
&lt;P&gt;&lt;SPAN&gt;The recommended approach for organizations that need to authenticate users across multiple identity sources is to configure a &lt;/SPAN&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;federated IdP&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt; that consolidates authentication. Solutions like &lt;/SPAN&gt;Azure Entra ID&lt;SPAN&gt; or &lt;/SPAN&gt;Okta&lt;SPAN&gt; can be used to unify identity management and connect to Qlik Cloud via &lt;/SPAN&gt;&lt;SPAN&gt;OIDC or SAML&lt;/SPAN&gt;&lt;SPAN&gt;.&lt;/SPAN&gt;&lt;/P&gt;
&lt;H4&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;How to Implement a Federated IdP&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;OL start="1" data-spread="false"&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Set Up a Federated IdP&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt; (Azure Entra ID, Okta, or another identity management solution).&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Sync Identity Sources&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt; within the federated IdP to ensure unique identities across different user groups.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Configure OIDC/SAML Authentication&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt; in Qlik Cloud with the federated IdP.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&lt;SPAN&gt;This approach ensures a &lt;/SPAN&gt;secure, efficient, and scalable authentication strategy&lt;SPAN&gt; that aligns with best practices for enterprise identity management.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Conclusion&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H3&gt;
&lt;P&gt;&lt;SPAN&gt;Qlik Cloud is designed to integrate seamlessly with a &lt;/SPAN&gt;single interactive IdP&lt;SPAN&gt;, providing a robust and secure authentication framework. Organizations that need to consolidate multiple identity sources can achieve this through a &lt;/SPAN&gt;federated IdP&lt;SPAN&gt;, ensuring centralized management, improved security, and a streamlined user experience. By leveraging enterprise-grade IdPs like &lt;/SPAN&gt;Azure Entra ID&lt;SPAN&gt; or &lt;/SPAN&gt;Okta&lt;SPAN&gt;, organizations can enhance their identity management strategy while maintaining full control over authentication policies and governance.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="4" color="#339966"&gt;&lt;STRONG&gt;Environment&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Qlik Cloud&lt;/LI&gt;
&lt;/UL&gt;</description>
    <pubDate>Tue, 20 May 2025 14:05:12 GMT</pubDate>
    <dc:creator>Dave_Channon</dc:creator>
    <dc:date>2025-05-20T14:05:12Z</dc:date>
    <item>
      <title>Why Qlik doesn't support multiple interactive identity providers on a Qlik Cloud tenant</title>
      <link>https://community.qlik.com/t5/Official-Support-Articles/Why-Qlik-doesn-t-support-multiple-interactive-identity-providers/ta-p/2508017</link>
      <description>&lt;P&gt;&lt;STRONG&gt;&lt;FONT size="4" color="#339966"&gt;Content&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;LI-TOC indent="15" liststyle="none" maxheadinglevel="4"&gt;&lt;/LI-TOC&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Qlik Cloud is designed to support a single interactive Identity Provider (IdP) per tenant.&lt;/P&gt;
&lt;P&gt;This approach enhances security, governance, and operational control while simplifying authentication management. Organizations that require multiple identity sources can achieve this by using a federated IdP (such as Azure Entra, Auth0, Keycloak, or Okta) to consolidate authentication and seamlessly connect it to Qlik Cloud, as described by&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/47022"&gt;@Leigh_Kennedy&lt;/a&gt;&amp;nbsp;in&amp;nbsp;&lt;SPAN&gt;&lt;A href="https://community.qlik.com/t5/Official-Support-Articles/Using-Multiple-concurrent-Identity-Providers-with-Qlik-Cloud/ta-p/2518278" target="_blank" rel="noopener"&gt;Using Multiple concurrent Identity Providers with Qlik Cloud&lt;/A&gt;.&lt;/SPAN&gt;&lt;/P&gt;
&lt;H3&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Rationale&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H3&gt;
&lt;H4&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Understanding interactive IdPs in Qlik Cloud&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;P&gt;Qlik Cloud allows organizations to configure an interactive IdP to manage user authentication. Options include:&lt;/P&gt;
&lt;UL class="lia-list-style-type-circle"&gt;
&lt;LI&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Qlik Account&lt;/STRONG&gt;&lt;/FONT&gt; (default for new, non-government tenants).&lt;/LI&gt;
&lt;LI&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;A standards-compliant OIDC or SAML provider&lt;/STRONG&gt;&lt;/FONT&gt;, such as Azure Entra, Okta, Auth0, or Keycloak.&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Any unauthenticated user attempting to access the tenant is redirected to the configured interactive IdP for authentication, ensuring a streamlined and secure login experience.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H4&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Why Qlik Cloud only supports one interactive IdP&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;P&gt;Using a single interactive IdP is a best practice for identity management and ensures consistency, security, and simplified administration.&lt;/P&gt;
&lt;P&gt;Key reasons include:&lt;/P&gt;
&lt;UL data-spread="false"&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;User Identity Consistency&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; Qlik Cloud relies on a user's subject and email as unique identifiers. Managing a single interactive IdP helps prevent duplicate identities and ensures seamless user access, reducing risk of users gaining unauthorized access to sensitive data or permissions.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Streamlined Identity &amp;amp; Access Management&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; Since Qlik Cloud does not transform incoming claims beyond remapping keys, keeping authentication centralized prevents unintended variances in usernames, email formats, or group names. This improves security and reduces maintenance of licenses and entitlements.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Optimized Group Management&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; A single interactive IdP provides a consistent structure for groups, ensuring they align with an organization’s access policies. By managing group filtering in one place, organizations can maintain clear and structured permissions.&amp;nbsp;Managing groups across multiple IdPs can quickly become unmanageable, leading to inconsistencies in user access.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Simplified Access Control&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; Groups in Qlik Cloud are referenced by name, making it more efficient to manage access through a single federated IdP rather than multiple sources.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Efficient Token Management&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; A unified IdP helps maintain consistency in authentication tokens, reducing administrative overhead and ensuring a smooth user experience.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Enhanced Security &amp;amp; Auditability&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; By centralizing authentication through a single IdP, organizations can apply security controls, enforce device policies, and monitor user access through audit logs.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;SPAN&gt;A &lt;/SPAN&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;federated IdP&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt; ensures that organizations retain full control over authentication policies, while providing a seamless experience for users accessing Qlik Cloud.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H4&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Why Federate Identity In-House?&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;P&gt;&lt;SPAN&gt;Many organizations choose to use a &lt;/SPAN&gt;federated identity provider&lt;SPAN&gt; to streamline identity management, enhance security, and improve user experience across multiple applications. Benefits include:&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL data-spread="false"&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Centralized User Lifecycle Management&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; Users from different sources can be managed in a single system, reducing duplication and inconsistencies.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Improved Security Policies&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; Organizations can enforce &lt;/SPAN&gt;multi-factor authentication (MFA), conditional access policies, and device trust settings&lt;SPAN&gt; at the IdP level.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Single Sign-On (SSO) Across Applications&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; Users authenticate once and gain seamless access to multiple platforms, including Qlik Cloud.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Comprehensive Logging &amp;amp; Compliance&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt;&lt;FONT color="#339966"&gt;:&lt;/FONT&gt; A federated IdP provides consolidated audit trails and governance controls for user authentication.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;SPAN&gt;By implementing a &lt;/SPAN&gt;federated identity provider&lt;SPAN&gt;, organizations can maintain flexibility in their authentication strategy while ensuring compatibility with Qlik Cloud.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Solution: Federate IdPs with an enterprise-grade IdP&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H3&gt;
&lt;P&gt;&lt;SPAN&gt;The recommended approach for organizations that need to authenticate users across multiple identity sources is to configure a &lt;/SPAN&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;federated IdP&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt; that consolidates authentication. Solutions like &lt;/SPAN&gt;Azure Entra ID&lt;SPAN&gt; or &lt;/SPAN&gt;Okta&lt;SPAN&gt; can be used to unify identity management and connect to Qlik Cloud via &lt;/SPAN&gt;&lt;SPAN&gt;OIDC or SAML&lt;/SPAN&gt;&lt;SPAN&gt;.&lt;/SPAN&gt;&lt;/P&gt;
&lt;H4&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;How to Implement a Federated IdP&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H4&gt;
&lt;OL start="1" data-spread="false"&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Set Up a Federated IdP&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt; (Azure Entra ID, Okta, or another identity management solution).&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Sync Identity Sources&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt; within the federated IdP to ensure unique identities across different user groups.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;FONT color="#339966"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Configure OIDC/SAML Authentication&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;SPAN&gt; in Qlik Cloud with the federated IdP.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&lt;SPAN&gt;This approach ensures a &lt;/SPAN&gt;secure, efficient, and scalable authentication strategy&lt;SPAN&gt; that aligns with best practices for enterprise identity management.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3&gt;&lt;FONT color="#339966"&gt;&lt;STRONG&gt;Conclusion&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/H3&gt;
&lt;P&gt;&lt;SPAN&gt;Qlik Cloud is designed to integrate seamlessly with a &lt;/SPAN&gt;single interactive IdP&lt;SPAN&gt;, providing a robust and secure authentication framework. Organizations that need to consolidate multiple identity sources can achieve this through a &lt;/SPAN&gt;federated IdP&lt;SPAN&gt;, ensuring centralized management, improved security, and a streamlined user experience. By leveraging enterprise-grade IdPs like &lt;/SPAN&gt;Azure Entra ID&lt;SPAN&gt; or &lt;/SPAN&gt;Okta&lt;SPAN&gt;, organizations can enhance their identity management strategy while maintaining full control over authentication policies and governance.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="4" color="#339966"&gt;&lt;STRONG&gt;Environment&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Qlik Cloud&lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Tue, 20 May 2025 14:05:12 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Official-Support-Articles/Why-Qlik-doesn-t-support-multiple-interactive-identity-providers/ta-p/2508017</guid>
      <dc:creator>Dave_Channon</dc:creator>
      <dc:date>2025-05-20T14:05:12Z</dc:date>
    </item>
  </channel>
</rss>

