<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>article Example Multi-Cloud deployment to Qlik Sense Enterprise SaaS using Auth0 programmatic authentication or Local Bearer Token in Official Support Articles</title>
    <link>https://community.qlik.com/t5/Official-Support-Articles/Example-Multi-Cloud-deployment-to-Qlik-Sense-Enterprise-SaaS/ta-p/1713311</link>
    <description>&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;The following are example steps for setting up a test Multi-Cloud deployment using the Local Bearer Token or the Auth0 programmatic (machine-to-machine) authentication&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;. This setup allows for app deployment from Qlik Sense Enterprise on Windows to Qlik Sense Enterprise SaaS. &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H4&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;Environment:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/H4&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;LI-PRODUCT title="Qlik Sense Enterprise on Windows" id="qlikSenseEnterpriseWindows"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;LI-PRODUCT title="Qlik Sense Enterprise SaaS" id="qlikSenseEnterpriseSaaS"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3&gt;Resolution:&lt;/H3&gt;
&lt;P&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;EM&gt;&lt;FONT size="6"&gt;&lt;STRONG&gt;&lt;SPAN&gt;!&lt;/SPAN&gt; &lt;/STRONG&gt;&lt;/FONT&gt;The information in this article is provided as-is and to be used at own discretion. Ongoing support on the solution is not provided by Qlik Support.&lt;/EM&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;STRONG&gt;Note:&lt;/STRONG&gt; These steps assume an &lt;A href="http://auth0.com" target="_blank" rel="noopener"&gt;auth0&lt;/A&gt; "Developer" account has already been created&lt;/SPAN&gt;&lt;/SPAN&gt;.&lt;BR /&gt;&lt;BR /&gt;There are two Multi-Cloud Deployment options for integrating Qlik Sense Enterprise on Windows to the Qlik Sense Enterprise SaaS environment and distributing apps. When using the &lt;STRONG&gt;local bearer token&lt;/STRONG&gt; option, the auth0 programmatic ("Machine to Machine") application is not required. Skip to &lt;STRONG&gt;On Qlik Sense Enterprise on Windows&amp;nbsp;&lt;/STRONG&gt;section below. &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;
&lt;H4&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;On Auth0 site:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;Follow the steps under &lt;A href="https://help.qlik.com/en-US/sense-admin/Subsystems/DeployAdministerQSE/Content/Sense_DeployAdminister/QSEoK/Deploy_QSEoK/auth0-setup.htm#anchor-4" target="_blank" rel="noopener"&gt;Creating an Auth0 API and application for programmatic access&lt;/A&gt; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;STRONG&gt;Notes:&lt;BR /&gt;- &lt;/STRONG&gt;Auth0 has recently changed the definition of &lt;STRONG&gt;Scope&lt;/STRONG&gt; and calls it &lt;STRONG&gt;Permissions&lt;/STRONG&gt; at the time of last update to this article.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H4&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;On Qlik Sense Enterprise on Windows:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;STRONG&gt;There are two options:&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;I. Using a &lt;STRONG&gt;local bearer token&lt;/STRONG&gt;: &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV&gt;&lt;SPAN&gt;&lt;SPAN&gt;1. Perform the steps listed under &lt;A href="https://help.qlik.com/en-US/sense-admin/Subsystems/DeployAdministerQSE/Content/Sense_DeployAdminister/Multi-Cloud/MSC-deployments.htm#anchor-1" target="_blank" rel="noopener"&gt;Setup with a local bearer token&lt;/A&gt;.&lt;BR /&gt;2. Make sure to copy the local bearer token string which is referenced in the &lt;STRONG&gt;On Qlik Sense Enterprise SaaS&amp;nbsp;&lt;/STRONG&gt;section below.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;BR /&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;II. Using a programmatic (&lt;STRONG&gt;Machine to Machine&lt;/STRONG&gt;) auth0 application:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;1. Perform the steps listed under &lt;A href="https://help.qlik.com/en-US/sense-admin/Subsystems/DeployAdministerQSE/Content/Sense_DeployAdminister/QSEoK/Deploy_QSEoK/auth0-setup.htm#anchor-4" target="_blank" rel="noopener"&gt;Creating an Auth0 API and application for programmatic access&lt;/A&gt;.&lt;BR /&gt;2. Open the Multi-cloud Setup Console (MSC) on a web browser via &lt;SPAN&gt;&lt;A href="https://&amp;lt;QS" target="test_blank"&gt;https://&amp;lt;QS&lt;/A&gt; server name&amp;gt;/api/msc&lt;/SPAN&gt;&lt;BR /&gt;3. Click on &lt;STRONG&gt;Deployments &lt;/STRONG&gt;and then on &lt;STRONG&gt;+ Set up new.&lt;/STRONG&gt;&lt;BR /&gt;4. Configured the following fields:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;TABLE border="1" width="735"&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD&gt;
&lt;DIV&gt;&lt;STRONG&gt;&lt;SPAN&gt;&lt;SPAN&gt;Deployment name&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/DIV&gt;
&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;QSEoCS_M2M&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;Give it a descriptive name&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD&gt;&lt;STRONG&gt;&lt;SPAN&gt;&lt;SPAN&gt;API Endpoint&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;A href="https://&amp;lt;QSEoCS" target="test_blank"&gt;https://&amp;lt;QSEoCS&lt;/A&gt; tenant name&amp;gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;- &lt;SPAN&gt;&amp;lt;QSEoCS tenant name&amp;gt; &lt;/SPAN&gt;is the&lt;SPAN&gt; QCS tenant name for when accessing the Cloud Hub&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD&gt;&lt;STRONG&gt;&lt;SPAN&gt;&lt;SPAN&gt;Audience&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;qlik.api&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;Use this a static required value.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD&gt;&lt;STRONG&gt;&lt;SPAN&gt;&lt;SPAN&gt;Client ID&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&amp;lt;Client ID&amp;gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;Obtained from Auth0 under the &lt;SPAN&gt;Applications &amp;gt; Machine to Machine application &amp;gt; Settings &amp;gt; Client ID&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD&gt;&lt;STRONG&gt;&lt;SPAN&gt;&lt;SPAN&gt;Client secret&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&amp;lt;Client Secret&amp;gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;Obtained from Auth0 under the &lt;SPAN&gt;Applications &amp;gt; Machine to Machine application &amp;gt; Settings&amp;gt; Client Secret&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD&gt;&lt;STRONG&gt;&lt;SPAN&gt;&lt;SPAN&gt;Token Endpoint&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;A href="https://&amp;lt;tenant" target="test_blank"&gt;https://&amp;lt;tenant&lt;/A&gt; domain&amp;gt;.auth0.com/oauth/token&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;Obtained from Auth0 under the &lt;SPAN&gt;Applications &amp;gt; Machine to Machine application &amp;gt; Settings &amp;gt;&lt;/SPAN&gt; &lt;SPAN&gt;Advance Settings &amp;gt; Endpoints &amp;gt; &lt;SPAN&gt;OAuth Token URL&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;5. Click on&lt;STRONG&gt; Apply&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;
&lt;/DIV&gt;
&lt;H4&gt;On Qlik Sense Enterprise SaaS:&lt;/H4&gt;
&lt;DIV&gt;&lt;SPAN&gt;&lt;SPAN&gt;I. Using a &lt;STRONG&gt;local bearer token&lt;/STRONG&gt;: &lt;/SPAN&gt;&lt;/SPAN&gt;
&lt;DIV&gt;1. Logon with a tenant admin account to Qlik Sense Enterprise SaaS Management console (e.g: &lt;SPAN&gt;&lt;A href="https://&amp;lt;QSEoCS" target="test_blank"&gt;https://&amp;lt;QSEoCS&lt;/A&gt; tenant&amp;gt;.us.qlikcloud.com/console&lt;/SPAN&gt; )&lt;/DIV&gt;
&lt;DIV&gt;2. Under &lt;STRONG&gt;Configuration &amp;gt; Identity Providers &lt;/STRONG&gt;click on &lt;STRONG&gt;Create new&lt;/STRONG&gt;&lt;BR /&gt;3. For &lt;STRONG&gt;Type &lt;/STRONG&gt;select &lt;SPAN&gt;Multi-cloud&lt;/SPAN&gt;&lt;BR /&gt;4. Paste the &lt;STRONG&gt;Local bearer token&lt;/STRONG&gt; previously copied from the MSC in to its respective box&lt;BR /&gt;5. Click &lt;STRONG&gt;Create.&lt;/STRONG&gt;&lt;BR /&gt;6. Now the App distribution needs to be configured. &lt;SPAN&gt;&lt;SPAN&gt;See example under &lt;A href="https://support.qlik.com/articles/Basic/Example-Multi-Cloud-App-distribution-setup" target="_blank" rel="noopener"&gt;Example Multi-Cloud App distribution setup&lt;/A&gt;&lt;BR /&gt;7. See the following article on available logs for App Distribution and Deployment Setup. &lt;A href="https://qlik.my.salesforce.com/articles/Basic/Multi-Cloud-deployment-logs-and-how-to-change-logging-level?id=kA53z000000brSr&amp;amp;popup=false&amp;amp;sfdcIFrameOrigin=https%3A%2F%2Fqlik.my.salesforce.com&amp;amp;isWsVw=true&amp;amp;nonce=37ff374a674f3e1edc254f021f20c372989a7f5303483ef8a79c3b673fe31006" target="_blank" rel="noopener"&gt;Multi-Cloud deployment logs and how to change logging level&lt;/A&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;II. Using a programmatic (&lt;STRONG&gt;Machine to Machine&lt;/STRONG&gt;) auth0 application:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;DIV&gt;1. Logon with a tenant admin account to Qlik Sense Enterprise SaaS Management console (e.g: &lt;SPAN&gt;&lt;A href="https://&amp;lt;QSEoCS" target="test_blank"&gt;https://&amp;lt;QSEoCS&lt;/A&gt; tenant&amp;gt;.us.qlikcloud.com/console&lt;/SPAN&gt; )&lt;/DIV&gt;
&lt;DIV&gt;2. Under &lt;STRONG&gt;Configuration &amp;gt; Identity Providers &lt;/STRONG&gt;click on &lt;STRONG&gt;Create new&lt;/STRONG&gt;&lt;BR /&gt;3. For &lt;STRONG&gt;Type &lt;/STRONG&gt;select &lt;SPAN&gt;Machine-to-Machine (M2M)&lt;/SPAN&gt;&lt;BR /&gt;4. For &lt;STRONG&gt;Provider&lt;/STRONG&gt; select &lt;SPAN&gt;Auth0&lt;/SPAN&gt;&lt;BR /&gt;5. For &lt;STRONG&gt;OpenID configuration&lt;/STRONG&gt; use &lt;SPAN&gt;&lt;A href="https://&amp;lt;tenant" target="test_blank"&gt;https://&amp;lt;tenant&lt;/A&gt; domain&amp;gt;.auth0.com/.well-known/openid-configuration&lt;/SPAN&gt;&lt;BR /&gt;6. Click &lt;STRONG&gt;Save&lt;/STRONG&gt;&lt;BR /&gt;7. Now the App distribution needs to be configured. &lt;SPAN&gt;&lt;SPAN&gt;See example under &lt;A href="https://support.qlik.com/articles/Basic/Example-Multi-Cloud-App-distribution-setup" target="_blank" rel="noopener"&gt;Example Multi-Cloud App distribution setup&lt;/A&gt;&lt;BR /&gt;8. See the following article on available logs for App Distribution and Deployment Setup. &lt;A href="https://qlik.my.salesforce.com/articles/Basic/Multi-Cloud-deployment-logs-and-how-to-change-logging-level?id=kA53z000000brSr&amp;amp;popup=false&amp;amp;sfdcIFrameOrigin=https%3A%2F%2Fqlik.my.salesforce.com&amp;amp;isWsVw=true&amp;amp;nonce=37ff374a674f3e1edc254f021f20c372989a7f5303483ef8a79c3b673fe31006" target="_blank" rel="noopener"&gt;Multi-Cloud deployment logs and how to change logging level&lt;/A&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;P&gt;9. If setting up Multi-Cloud distribution, in a multi node environment. It is possible to disable the Distribution from RIM nodes but not on the central node.&amp;nbsp; This can be done as follows;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;In file : C:\Program Files\Qlik\Sense\ServiceDispatcher\Services.conf&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Modify the file content to disable the services by adding "Disabled=true" for both services.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;[appdistributionservice]&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Disabled=true&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Identity=Qlik.app-distribution-service&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;DisplayName=App Distribution Service&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ExePath=dotnet\dotnet.exe&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;UseScript=false&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;[hybriddeploymentservice]&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Disabled=true&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Identity=Qlik.hybrid-deployment-service&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;DisplayName=Hybrid Deployment Service&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ExePath=dotnet\dotnet.exe&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;UseScript=false&lt;/SPAN&gt;&lt;/P&gt;
&lt;/DIV&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3&gt;Related Content:&lt;/H3&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;A href="https://community.qlik.com/t5/Qlik-Support-Knowledge-Base/Example-auth0-SAML-setup-with-Qlik-Sense-Enterprise-on-Windows/ta-p/1713277" target="_blank" rel="noopener"&gt;Example auth0 authentication setup on Qlik Cloud Services&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A href="https://community.qlik.com/t5/Qlik-Support-Knowledge-Base/Example-auth0-SAML-setup-with-Qlik-Sense-Enterprise-on-Windows/ta-p/1713277" target="_blank" rel="noopener"&gt;Example auth0 SAML setup with Qlik Sense Enterprise on Windows&lt;/A&gt;&lt;/LI&gt;
&lt;/UL&gt;</description>
    <pubDate>Tue, 10 May 2022 19:03:11 GMT</pubDate>
    <dc:creator>Andre_Sostizzo</dc:creator>
    <dc:date>2022-05-10T19:03:11Z</dc:date>
    <item>
      <title>Example Multi-Cloud deployment to Qlik Sense Enterprise SaaS using Auth0 programmatic authentication or Local Bearer Token</title>
      <link>https://community.qlik.com/t5/Official-Support-Articles/Example-Multi-Cloud-deployment-to-Qlik-Sense-Enterprise-SaaS/ta-p/1713311</link>
      <description>&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;The following are example steps for setting up a test Multi-Cloud deployment using the Local Bearer Token or the Auth0 programmatic (machine-to-machine) authentication&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;. This setup allows for app deployment from Qlik Sense Enterprise on Windows to Qlik Sense Enterprise SaaS. &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H4&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;Environment:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/H4&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;LI-PRODUCT title="Qlik Sense Enterprise on Windows" id="qlikSenseEnterpriseWindows"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;LI-PRODUCT title="Qlik Sense Enterprise SaaS" id="qlikSenseEnterpriseSaaS"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3&gt;Resolution:&lt;/H3&gt;
&lt;P&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;EM&gt;&lt;FONT size="6"&gt;&lt;STRONG&gt;&lt;SPAN&gt;!&lt;/SPAN&gt; &lt;/STRONG&gt;&lt;/FONT&gt;The information in this article is provided as-is and to be used at own discretion. Ongoing support on the solution is not provided by Qlik Support.&lt;/EM&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;STRONG&gt;Note:&lt;/STRONG&gt; These steps assume an &lt;A href="http://auth0.com" target="_blank" rel="noopener"&gt;auth0&lt;/A&gt; "Developer" account has already been created&lt;/SPAN&gt;&lt;/SPAN&gt;.&lt;BR /&gt;&lt;BR /&gt;There are two Multi-Cloud Deployment options for integrating Qlik Sense Enterprise on Windows to the Qlik Sense Enterprise SaaS environment and distributing apps. When using the &lt;STRONG&gt;local bearer token&lt;/STRONG&gt; option, the auth0 programmatic ("Machine to Machine") application is not required. Skip to &lt;STRONG&gt;On Qlik Sense Enterprise on Windows&amp;nbsp;&lt;/STRONG&gt;section below. &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;
&lt;H4&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;On Auth0 site:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;Follow the steps under &lt;A href="https://help.qlik.com/en-US/sense-admin/Subsystems/DeployAdministerQSE/Content/Sense_DeployAdminister/QSEoK/Deploy_QSEoK/auth0-setup.htm#anchor-4" target="_blank" rel="noopener"&gt;Creating an Auth0 API and application for programmatic access&lt;/A&gt; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;STRONG&gt;Notes:&lt;BR /&gt;- &lt;/STRONG&gt;Auth0 has recently changed the definition of &lt;STRONG&gt;Scope&lt;/STRONG&gt; and calls it &lt;STRONG&gt;Permissions&lt;/STRONG&gt; at the time of last update to this article.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;H4&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;On Qlik Sense Enterprise on Windows:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/H4&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;STRONG&gt;There are two options:&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;I. Using a &lt;STRONG&gt;local bearer token&lt;/STRONG&gt;: &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV&gt;&lt;SPAN&gt;&lt;SPAN&gt;1. Perform the steps listed under &lt;A href="https://help.qlik.com/en-US/sense-admin/Subsystems/DeployAdministerQSE/Content/Sense_DeployAdminister/Multi-Cloud/MSC-deployments.htm#anchor-1" target="_blank" rel="noopener"&gt;Setup with a local bearer token&lt;/A&gt;.&lt;BR /&gt;2. Make sure to copy the local bearer token string which is referenced in the &lt;STRONG&gt;On Qlik Sense Enterprise SaaS&amp;nbsp;&lt;/STRONG&gt;section below.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;BR /&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;II. Using a programmatic (&lt;STRONG&gt;Machine to Machine&lt;/STRONG&gt;) auth0 application:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;1. Perform the steps listed under &lt;A href="https://help.qlik.com/en-US/sense-admin/Subsystems/DeployAdministerQSE/Content/Sense_DeployAdminister/QSEoK/Deploy_QSEoK/auth0-setup.htm#anchor-4" target="_blank" rel="noopener"&gt;Creating an Auth0 API and application for programmatic access&lt;/A&gt;.&lt;BR /&gt;2. Open the Multi-cloud Setup Console (MSC) on a web browser via &lt;SPAN&gt;&lt;A href="https://&amp;lt;QS" target="test_blank"&gt;https://&amp;lt;QS&lt;/A&gt; server name&amp;gt;/api/msc&lt;/SPAN&gt;&lt;BR /&gt;3. Click on &lt;STRONG&gt;Deployments &lt;/STRONG&gt;and then on &lt;STRONG&gt;+ Set up new.&lt;/STRONG&gt;&lt;BR /&gt;4. Configured the following fields:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;TABLE border="1" width="735"&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD&gt;
&lt;DIV&gt;&lt;STRONG&gt;&lt;SPAN&gt;&lt;SPAN&gt;Deployment name&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/DIV&gt;
&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;QSEoCS_M2M&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;Give it a descriptive name&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD&gt;&lt;STRONG&gt;&lt;SPAN&gt;&lt;SPAN&gt;API Endpoint&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;A href="https://&amp;lt;QSEoCS" target="test_blank"&gt;https://&amp;lt;QSEoCS&lt;/A&gt; tenant name&amp;gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;- &lt;SPAN&gt;&amp;lt;QSEoCS tenant name&amp;gt; &lt;/SPAN&gt;is the&lt;SPAN&gt; QCS tenant name for when accessing the Cloud Hub&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD&gt;&lt;STRONG&gt;&lt;SPAN&gt;&lt;SPAN&gt;Audience&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;qlik.api&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;Use this a static required value.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD&gt;&lt;STRONG&gt;&lt;SPAN&gt;&lt;SPAN&gt;Client ID&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&amp;lt;Client ID&amp;gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;Obtained from Auth0 under the &lt;SPAN&gt;Applications &amp;gt; Machine to Machine application &amp;gt; Settings &amp;gt; Client ID&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD&gt;&lt;STRONG&gt;&lt;SPAN&gt;&lt;SPAN&gt;Client secret&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&amp;lt;Client Secret&amp;gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;Obtained from Auth0 under the &lt;SPAN&gt;Applications &amp;gt; Machine to Machine application &amp;gt; Settings&amp;gt; Client Secret&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD&gt;&lt;STRONG&gt;&lt;SPAN&gt;&lt;SPAN&gt;Token Endpoint&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;A href="https://&amp;lt;tenant" target="test_blank"&gt;https://&amp;lt;tenant&lt;/A&gt; domain&amp;gt;.auth0.com/oauth/token&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD&gt;&lt;SPAN&gt;&lt;SPAN&gt;Obtained from Auth0 under the &lt;SPAN&gt;Applications &amp;gt; Machine to Machine application &amp;gt; Settings &amp;gt;&lt;/SPAN&gt; &lt;SPAN&gt;Advance Settings &amp;gt; Endpoints &amp;gt; &lt;SPAN&gt;OAuth Token URL&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;5. Click on&lt;STRONG&gt; Apply&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;
&lt;/DIV&gt;
&lt;H4&gt;On Qlik Sense Enterprise SaaS:&lt;/H4&gt;
&lt;DIV&gt;&lt;SPAN&gt;&lt;SPAN&gt;I. Using a &lt;STRONG&gt;local bearer token&lt;/STRONG&gt;: &lt;/SPAN&gt;&lt;/SPAN&gt;
&lt;DIV&gt;1. Logon with a tenant admin account to Qlik Sense Enterprise SaaS Management console (e.g: &lt;SPAN&gt;&lt;A href="https://&amp;lt;QSEoCS" target="test_blank"&gt;https://&amp;lt;QSEoCS&lt;/A&gt; tenant&amp;gt;.us.qlikcloud.com/console&lt;/SPAN&gt; )&lt;/DIV&gt;
&lt;DIV&gt;2. Under &lt;STRONG&gt;Configuration &amp;gt; Identity Providers &lt;/STRONG&gt;click on &lt;STRONG&gt;Create new&lt;/STRONG&gt;&lt;BR /&gt;3. For &lt;STRONG&gt;Type &lt;/STRONG&gt;select &lt;SPAN&gt;Multi-cloud&lt;/SPAN&gt;&lt;BR /&gt;4. Paste the &lt;STRONG&gt;Local bearer token&lt;/STRONG&gt; previously copied from the MSC in to its respective box&lt;BR /&gt;5. Click &lt;STRONG&gt;Create.&lt;/STRONG&gt;&lt;BR /&gt;6. Now the App distribution needs to be configured. &lt;SPAN&gt;&lt;SPAN&gt;See example under &lt;A href="https://support.qlik.com/articles/Basic/Example-Multi-Cloud-App-distribution-setup" target="_blank" rel="noopener"&gt;Example Multi-Cloud App distribution setup&lt;/A&gt;&lt;BR /&gt;7. See the following article on available logs for App Distribution and Deployment Setup. &lt;A href="https://qlik.my.salesforce.com/articles/Basic/Multi-Cloud-deployment-logs-and-how-to-change-logging-level?id=kA53z000000brSr&amp;amp;popup=false&amp;amp;sfdcIFrameOrigin=https%3A%2F%2Fqlik.my.salesforce.com&amp;amp;isWsVw=true&amp;amp;nonce=37ff374a674f3e1edc254f021f20c372989a7f5303483ef8a79c3b673fe31006" target="_blank" rel="noopener"&gt;Multi-Cloud deployment logs and how to change logging level&lt;/A&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;II. Using a programmatic (&lt;STRONG&gt;Machine to Machine&lt;/STRONG&gt;) auth0 application:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;DIV&gt;1. Logon with a tenant admin account to Qlik Sense Enterprise SaaS Management console (e.g: &lt;SPAN&gt;&lt;A href="https://&amp;lt;QSEoCS" target="test_blank"&gt;https://&amp;lt;QSEoCS&lt;/A&gt; tenant&amp;gt;.us.qlikcloud.com/console&lt;/SPAN&gt; )&lt;/DIV&gt;
&lt;DIV&gt;2. Under &lt;STRONG&gt;Configuration &amp;gt; Identity Providers &lt;/STRONG&gt;click on &lt;STRONG&gt;Create new&lt;/STRONG&gt;&lt;BR /&gt;3. For &lt;STRONG&gt;Type &lt;/STRONG&gt;select &lt;SPAN&gt;Machine-to-Machine (M2M)&lt;/SPAN&gt;&lt;BR /&gt;4. For &lt;STRONG&gt;Provider&lt;/STRONG&gt; select &lt;SPAN&gt;Auth0&lt;/SPAN&gt;&lt;BR /&gt;5. For &lt;STRONG&gt;OpenID configuration&lt;/STRONG&gt; use &lt;SPAN&gt;&lt;A href="https://&amp;lt;tenant" target="test_blank"&gt;https://&amp;lt;tenant&lt;/A&gt; domain&amp;gt;.auth0.com/.well-known/openid-configuration&lt;/SPAN&gt;&lt;BR /&gt;6. Click &lt;STRONG&gt;Save&lt;/STRONG&gt;&lt;BR /&gt;7. Now the App distribution needs to be configured. &lt;SPAN&gt;&lt;SPAN&gt;See example under &lt;A href="https://support.qlik.com/articles/Basic/Example-Multi-Cloud-App-distribution-setup" target="_blank" rel="noopener"&gt;Example Multi-Cloud App distribution setup&lt;/A&gt;&lt;BR /&gt;8. See the following article on available logs for App Distribution and Deployment Setup. &lt;A href="https://qlik.my.salesforce.com/articles/Basic/Multi-Cloud-deployment-logs-and-how-to-change-logging-level?id=kA53z000000brSr&amp;amp;popup=false&amp;amp;sfdcIFrameOrigin=https%3A%2F%2Fqlik.my.salesforce.com&amp;amp;isWsVw=true&amp;amp;nonce=37ff374a674f3e1edc254f021f20c372989a7f5303483ef8a79c3b673fe31006" target="_blank" rel="noopener"&gt;Multi-Cloud deployment logs and how to change logging level&lt;/A&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;P&gt;9. If setting up Multi-Cloud distribution, in a multi node environment. It is possible to disable the Distribution from RIM nodes but not on the central node.&amp;nbsp; This can be done as follows;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;In file : C:\Program Files\Qlik\Sense\ServiceDispatcher\Services.conf&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Modify the file content to disable the services by adding "Disabled=true" for both services.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;[appdistributionservice]&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Disabled=true&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Identity=Qlik.app-distribution-service&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;DisplayName=App Distribution Service&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ExePath=dotnet\dotnet.exe&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;UseScript=false&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;[hybriddeploymentservice]&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Disabled=true&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Identity=Qlik.hybrid-deployment-service&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;DisplayName=Hybrid Deployment Service&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ExePath=dotnet\dotnet.exe&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;UseScript=false&lt;/SPAN&gt;&lt;/P&gt;
&lt;/DIV&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3&gt;Related Content:&lt;/H3&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;A href="https://community.qlik.com/t5/Qlik-Support-Knowledge-Base/Example-auth0-SAML-setup-with-Qlik-Sense-Enterprise-on-Windows/ta-p/1713277" target="_blank" rel="noopener"&gt;Example auth0 authentication setup on Qlik Cloud Services&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A href="https://community.qlik.com/t5/Qlik-Support-Knowledge-Base/Example-auth0-SAML-setup-with-Qlik-Sense-Enterprise-on-Windows/ta-p/1713277" target="_blank" rel="noopener"&gt;Example auth0 SAML setup with Qlik Sense Enterprise on Windows&lt;/A&gt;&lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Tue, 10 May 2022 19:03:11 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Official-Support-Articles/Example-Multi-Cloud-deployment-to-Qlik-Sense-Enterprise-SaaS/ta-p/1713311</guid>
      <dc:creator>Andre_Sostizzo</dc:creator>
      <dc:date>2022-05-10T19:03:11Z</dc:date>
    </item>
  </channel>
</rss>

